Headline
GHSA-8hc4-vh64-cxmj: Server-Side Request Forgery in axios
axios 1.7.2 allows SSRF via unexpected behavior where requests for path relative URLs get processed as protocol relative URLs.
Server-Side Request Forgery in axios
High severity GitHub Reviewed Published Aug 12, 2024 to the GitHub Advisory Database • Updated Aug 12, 2024
Related news
Red Hat Security Advisory 2024-6211-03
Red Hat Security Advisory 2024-6211-03 - Red Hat OpenShift Service Mesh Containers for 2.6.1. Issues addressed include a denial of service vulnerability.
Red Hat Security Advisory 2024-6210-03
Red Hat Security Advisory 2024-6210-03 - Red Hat OpenShift Service Mesh Containers for 2.5.4.
Red Hat Security Advisory 2024-6209-03
Red Hat Security Advisory 2024-6209-03 - Red Hat OpenShift Service Mesh Containers for 2.4.10.