Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Axios
(Axios)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 4 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2023-11-08 | CVE-2023-45857 | An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information. | Axios | 6.5 | ||
2020-11-06 | CVE-2020-28168 | Axios NPM package 0.21.0 contains a Server-Side Request Forgery (SSRF) vulnerability where an attacker is able to bypass a proxy by providing a URL that responds with a redirect to a restricted host or IP address. | Axios, Sinec_ins | 5.9 | ||
2021-08-31 | CVE-2021-3749 | axios is vulnerable to Inefficient Regular Expression Complexity | Axios, Goldengate, Sinec_ins | 7.5 | ||
2019-05-07 | CVE-2019-10742 | Axios up to and including 0.18.0 allows attackers to cause a denial of service (application crash) by continuing to accepting content after maxContentLength is exceeded. | Axios | 7.5 |