node-axios

Direct Vulnerabilities

Known vulnerabilities in the node-axios package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Uncontrolled Recursion

*
  • L
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • L
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • L
Resource Exhaustion

*
  • L
Resource Exhaustion

*
  • L
Resource Exhaustion

*
  • L
Arbitrary Code Injection

*
  • L
Unintended Proxy or Intermediary ('Confused Deputy')

*
  • H
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • H
Information Exposure

*
  • L
Information Exposure

*
  • C
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • C
Improperly Controlled Modification of Dynamically-Determined Object Attributes

*
  • C
Permissive Whitelist

*
  • L
Permissive Whitelist

*
  • M
Improper Authentication

*
  • L
Improper Encoding or Escaping of Output

*
  • H
Uncontrolled Recursion

*
  • H
Server-Side Request Forgery (SSRF)

*
  • L
CRLF Injection

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • L
HTTP Response Splitting

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • L
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • M
HTTP Response Splitting

*
  • L
Resource Exhaustion

*
  • L
Improper Check for Unusual or Exceptional Conditions

*
  • C
Unintended Proxy or Intermediary ('Confused Deputy')

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • M
Server-Side Request Forgery (SSRF)

<1.8.4+dfsg-1
  • C
CVE-2024-57965

<1.2.1+dfsg-1+deb12u1
  • M
Cross-site Request Forgery (CSRF)

<1.2.1+dfsg-1+deb12u1
  • M
Server-Side Request Forgery (SSRF)

<0.21.1+dfsg-1
  • H
Improper Handling of Exceptional Conditions

<0.17.1+dfsg-2
  • H
Inefficient Regular Expression Complexity

<0.21.3+dfsg-1