We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? # to your account
The one-liner node.js proxy middleware for connect, express and browser-sync
Library home page: https://registry.npmjs.org/http-proxy-middleware/-/http-proxy-middleware-2.0.6.tgz
Path to dependency file: /ui/package.json
Path to vulnerable library: /ui/package.json
Dependency Hierarchy:
Found in base branch: master
In http-proxy-middleware before 2.0.9 and 3.x before 3.0.5, fixRequestBody proceeds even if bodyParser has failed.
Publish Date: 2025-04-15
URL: CVE-2025-32997
Base Score Metrics:
Type: Upgrade version
Release Date: 2025-04-15
Fix Resolution: http-proxy-middleware - 2.0.9
Step up your Open Source Security Game with Mend here
The text was updated successfully, but these errors were encountered:
No branches or pull requests
CVE-2025-32997 - Medium Severity Vulnerability
The one-liner node.js proxy middleware for connect, express and browser-sync
Library home page: https://registry.npmjs.org/http-proxy-middleware/-/http-proxy-middleware-2.0.6.tgz
Path to dependency file: /ui/package.json
Path to vulnerable library: /ui/package.json
Dependency Hierarchy:
Found in base branch: master
In http-proxy-middleware before 2.0.9 and 3.x before 3.0.5, fixRequestBody proceeds even if bodyParser has failed.
Publish Date: 2025-04-15
URL: CVE-2025-32997
Base Score Metrics:
Type: Upgrade version
Release Date: 2025-04-15
Fix Resolution: http-proxy-middleware - 2.0.9
Step up your Open Source Security Game with Mend here
The text was updated successfully, but these errors were encountered: