vendor

axios

15 thingsrelated by NVD

Its products

axios 15

Being told

Watch: its feed Ask more of it

The feed says each thing that enters, leaves or changes; a reader adds its address, /zetlyn/trackers/cve/things.atom?q=…, to theirs.

Every thing

axios: Axios: Client-side Denial of Service via unescaped regex metacharacters in XSRF cookie name
CVE-2026-44496
Severity high
axios: Axios: Information disclosure due to prototype pollution vulnerability
CVE-2026-44495
Severity high
axios: Axios: Man-in-the-Middle (MITM) attack via Prototype Pollution
CVE-2026-44494
Severity high
axios: Axios: Proxy bypass via IPv4-mapped IPv6 address non-normalization
CVE-2026-44492
Severity high
axios: Axios: Denial of Service due to unenforced request and response size limits
CVE-2026-44488
Severity high
axios: Axios: Information disclosure of proxy credentials via redirect flows
CVE-2026-44487
Severity high
axios: Axios: Information disclosure of proxy credentials via HTTP redirects
CVE-2026-44486
Severity high
axios: Axios: Prototype pollution allows information disclosure and request manipulation
CVE-2026-42264
Severity critical
axios: Axios: Invisible JSON Response Tampering via Prototype Pollution Gadget
CVE-2026-42044
Severity critical
axios: Axios: NO_PROXY bypass via crafted URL
CVE-2026-42043
Severity critical
axios: Axios: Authentication bypass due to prototype pollution of HTTP error handling
CVE-2026-42041
Severity high
axios: Node.js: Axios: Denial of Service via unbounded recursion in toFormData with deeply nested request data
CVE-2026-42039
Severity high
axios: Axios: HTTP Transport Hijacking via Prototype Pollution
CVE-2026-42033
Severity high
axios: Axios affected by Denial of Service via __proto__ Key in mergeConfig
CVE-2026-25639
Severity high
axios: Axios: Server-Side Request Forgery and proxy bypass due to improper hostname normalization
CVE-2025-62718
Severity critical