Description
Axios NPM package 0.21.0 contains a Server-Side Request Forgery (SSRF) vulnerability where an attacker is able to bypass a proxy by providing a URL that responds with a redirect to a restricted host or IP address.
Remediation
References
Related Vulnerabilities
Magento Improper Authorization Vulnerability (CVE-2020-24404)
Liferay Portal Observable Discrepancy Vulnerability (CVE-2024-25146)
XWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2021-32731)
WordPress Plugin Injectbody Spam Injection (All)
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-10186)