Known Vulnerabilities for products from Axios

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Axios".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-44496 json Not Provided 2026-06-11 2026-06-11
CVE-2026-44495 json Not Provided 2026-06-11 2026-06-12
CVE-2026-44494 json Axios is a promise based HTTP client for the browser and Node.js. From 1.0.0 to before 1.16.0, the Axios library is vulnerabl... Not Provided 2026-06-11 2026-06-12
CVE-2026-44492 json Not Provided 2026-06-11 2026-06-13
CVE-2026-44490 json Axios is a promise based HTTP client for the browser and Node.js. Prior to 0.32.0 and 1.16.0, axios exposes two read-side pro... Not Provided 2026-06-11 2026-06-15
CVE-2026-44489 json Axios is a promise based HTTP client for the browser and Node.js. From 1.15.2 to before 1.16.0, nested objects created by uti... Not Provided 2026-06-11 2026-06-15
CVE-2026-44488 json Not Provided 2026-06-11 2026-06-11
CVE-2026-44487 json Axios is a promise based HTTP client for the browser and Node.js. Prior to 0.32.0 and 1.16.0, Axios’s Node.js HTTP adapter ... Not Provided 2026-06-11 2026-06-12
CVE-2026-44486 json Axios is a promise based HTTP client for the browser and Node.js. Prior to 0.32.0 and 1.16.0, Axios’ Node.js HTTP adapter c... Not Provided 2026-06-11 2026-06-13
CVE-2026-44286 json Not Provided 2026-05-08 2026-05-11
CVE-2026-42264 json Axios is a promise based HTTP client for the browser and Node.js. From version 1.0.0 to before version 1.15.2, fFive config p... Not Provided 2026-05-08 2026-05-13
CVE-2026-42044 json Axios is a promise based HTTP client for the browser and Node.js. From 1.0.0 to before 1.15.2, he Axios library is vulnerable... Not Provided 2026-04-24 2026-04-27
CVE-2026-42043 json Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, an attacker who can influence t... Not Provided 2026-04-24 2026-04-27
CVE-2026-42042 json Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, the Axios library's XSRF token ... Not Provided 2026-04-24 2026-04-27
CVE-2026-42041 json Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, the Axios library is vulnerable... Not Provided 2026-04-24 2026-04-27
CVE-2026-42040 json Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, the encode() function in lib/he... Not Provided 2026-04-24 2026-04-27
CVE-2026-42039 json Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, toFormData recursively walks ne... Not Provided 2026-04-24 2026-04-27
CVE-2026-42038 json Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, he fix for no_proxy hostname no... Not Provided 2026-04-24 2026-04-27
CVE-2026-42037 json Axios is a promise based HTTP client for the browser and Node.js. From 1.0.0 to before 1.15.1, the FormDataPart constructor i... Not Provided 2026-04-24 2026-04-27
CVE-2026-42036 json Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, when responseType: 'stream' is ... Not Provided 2026-04-24 2026-04-27

Known software with vulnerabilities from Axios

Type Vendor Product Version
ApplicationAxiosAxios0.1.0
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report