Axios up to and including 0.18.0 allows attackers to cause a denial of service (application crash) by continuing to accepting content after maxContentLength is exceeded.
The product does not handle or incorrectly handles an exceptional condition.
Link | Tags |
---|---|
https://app.snyk.io/vuln/SNYK-JS-AXIOS-174505 | patch third party advisory exploit |
https://github.com/axios/axios/issues/1098 | third party advisory exploit |
https://github.com/axios/axios/pull/1485 | third party advisory patch |