
Research
Malicious fezbox npm Package Steals Browser Passwords from Cookies via Innovative QR Code Steganographic Technique
A malicious package uses a QR code as steganography in an innovative technique.
@sap-cloud-sdk/http-client
Advanced tools
This package contains the generic http-client functionality of the SAP Cloud SDK as well as the Cloud Platform abstractions.
The generic http-client adds SAP infrastructure specific functionality on top of a standard HTTP Client. The client handles connectivity related issues such as destination lookup, connections to SAP S/4HANA On-premise and web proxies.
$ npm install @sap-cloud-sdk/http-client
To make a request, use the executeHttpRequest function.
executeHttpRequest(destination, requestConfig, httpRequestOptions);
For more detailed overview visit our Generic HTTP Client documentation.
The recommended way to get in touch with us is to create an issue on GitHub. Select the issue category Bug, Feature, or Question depending on the nature of your request. We try to provide fixes, features and answers as soon as possible.
If you would like to contribute to the SAP Cloud SDK, please make yourself familiar with our contributing guidelines and follow the given instructions.
The SAP Cloud SDK is released under the Apache License Version 2.0.
4.1.2
axios
to 1.12.2
to fix vulnerability to DoS attack. Refer here for more details. (011b841)FAQs
SAP Cloud SDK for JavaScript http-client
The npm package @sap-cloud-sdk/http-client receives a total of 49,610 weekly downloads. As such, @sap-cloud-sdk/http-client popularity was classified as popular.
We found that @sap-cloud-sdk/http-client demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 5 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.
Application Security
/Research
/Security News
Socket detected multiple compromised CrowdStrike npm packages, continuing the "Shai-Hulud" supply chain attack that has now impacted nearly 500 packages.