What would you like to be added?
|
--- |
|
name: form-data |
|
version: 4.0.0 |
|
type: npm |
Hi team, could you please bump the form-data dependency version to 4.0.4??
Use of Insufficiently Random Values vulnerability in form-data allows HTTP Parameter Pollution (HPP). This vulnerability is associated with program files lib/form_data.Js. This issue affects form-data: < 2.5.4, 3.0.0 - 3.0.3, 4.0.0 - 4.0.3.
Why is this needed?
https://nvd.nist.gov/vuln/detail/CVE-2025-7783
Thank you :)