PT-2019-12019 · Npm · Axios
Dinvlad
+7
·
Published
2019-05-07
·
Updated
2021-07-21
·
CVE-2019-10742
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
axios versions up to and including 0.18.0
Description
The issue allows attackers to cause a denial of service by continuing to accept content after the
maxContentLength is exceeded, potentially leading to high CPU usage.Recommendations
For axios versions up to and including 0.18.0, upgrade to 0.18.1 or later.
Exploit
Fix
DoS
Improper Handling of Exceptional Conditions
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Axios