Skip to content

fix(core): upgrade axios to 1.12.0 to address CVE-2025-58754 #706

fix(core): upgrade axios to 1.12.0 to address CVE-2025-58754

fix(core): upgrade axios to 1.12.0 to address CVE-2025-58754 #706

Re-run triggered October 6, 2025 09:21
Status Success
Total duration 7m 21s
Artifacts

codeql-pr.yml

on: pull_request
Matrix: analyze
Fit to window
Zoom out
Zoom in

Annotations

12 warnings
Analyze (actions)
Unable to validate code scanning workflow: MissingPushHook
Analyze (actions)
1 issue was detected with this workflow: Please specify an on.push hook to analyze and see code scanning alerts from the default branch on the Security tab.
Analyze (actions)
Feature flags do not specify a default CLI version. Falling back to the CLI version shipped with the Action. This is 2.22.4.
Analyze (actions)
This run of the CodeQL Action does not have permission to access Code Scanning API endpoints. As a result, it will not be opted into any experimental features. This could be because the Action is running on a pull request from a fork. If not, please ensure the Action has the 'security-events: write' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
Analyze (javascript-typescript)
Unable to validate code scanning workflow: MissingPushHook
Analyze (javascript-typescript)
1 issue was detected with this workflow: Please specify an on.push hook to analyze and see code scanning alerts from the default branch on the Security tab.
Analyze (javascript-typescript)
Feature flags do not specify a default CLI version. Falling back to the CLI version shipped with the Action. This is 2.22.4.
Analyze (javascript-typescript)
This run of the CodeQL Action does not have permission to access Code Scanning API endpoints. As a result, it will not be opted into any experimental features. This could be because the Action is running on a pull request from a fork. If not, please ensure the Action has the 'security-events: write' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
Analyze (rust)
Unable to validate code scanning workflow: MissingPushHook
Analyze (rust)
1 issue was detected with this workflow: Please specify an on.push hook to analyze and see code scanning alerts from the default branch on the Security tab.
Analyze (rust)
Feature flags do not specify a default CLI version. Falling back to the CLI version shipped with the Action. This is 2.22.4.
Analyze (rust)
This run of the CodeQL Action does not have permission to access Code Scanning API endpoints. As a result, it will not be opted into any experimental features. This could be because the Action is running on a pull request from a fork. If not, please ensure the Action has the 'security-events: write' permission. Details: Resource not accessible by integration - https://docs.github.com/rest