{
    "low": true,
    "_allowlistInfo": [
      {
        "advisory": "GHSA-p8p7-x288-28g6",
        "details": "The Request package through 2.88.2 for Node.js allows a bypass of SSRF mitigations via an attacker-controller server that does a cross-protocol redirect (HTTP to HTTPS, or HTTPS to HTTP)",
        "justification1": "Request package is deprecated and unlikely to receive updates.",
        "justification2": "Application unaffected as it only talks to kubernetes, which can be asserted as not an attacker-controlled server.",
        "expiry": "28 April 2023 00:00"
      }
    ],
    "allowlist": [
    ],
    "skip-dev": true
  }
  