An open index of dependabot pull requests across open source projects.

axios

Ecosystem:
npm
Package URL:
pkg:npm/axios
Total PRs:
70,171 Dependabot PRs
Latest PR:
about 9 hours ago
Unique Repositories:
38,422 repositories
Unique Repos (30 days):
1,762 repositories
Security Advisories
axios Inefficient Regular Expression Complexity vulnerability
GHSA-cph5-m8f7-6c5x CVE-2021-3749 HIGH published over 4 years ago • updated 10 days ago
axios before v0.21.2 is vulnerable to Inefficient Regular Expression Complexity.
Axios: unbounded recursion in toFormData causes DoS via deeply nested request data
GHSA-62hf-57xw-28j9 CVE-2026-42039 MODERATE published 25 days ago • updated about 21 hours ago
### Summary toFormData recursively walks nested objects with no depth limit, so a deeply nested value passed as request data crashes the Node.js pr...
Axios: HTTP adapter streamed responses bypass maxContentLength
GHSA-vf2m-468p-8v99 CVE-2026-42036 MODERATE published 25 days ago • updated about 21 hours ago
### Summary When responseType: 'stream' is used, Axios returns the response stream without enforcing maxContentLength. This bypasses configured re...
Axios Cross-Site Request Forgery Vulnerability
GHSA-wf5p-g6vw-rhxx CVE-2023-45857 MODERATE published over 2 years ago • updated about 18 hours ago
An issue discovered in Axios 0.8.1 through 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP he...
Axios: Null Byte Injection via Reverse-Encoding in AxiosURLSearchParams
GHSA-xhjh-pmcv-23jw CVE-2026-42040 LOW published 25 days ago • updated 3 days ago
# Vulnerability Disclosure: Null Byte Injection via Reverse-Encoding in AxiosURLSearchParams ## Summary The `encode()` function in `lib/helpers/A...
Recent PRs
Package Details
Name: axios
Ecosystem: npm
PURL Type: npm
Package URL: pkg:npm/axios
JSON API: View JSON
Security Advisories

24

Active advisories
HIGH 10
MODERATE 13
LOW 1
View All npm Advisories
Package Information
Description:

Promise based HTTP client for the browser and node.js

Repository: https://github.com/axios/axios
Homepage: https://axios-http.com
Latest Release: 1.9.0
about 1 year ago
Dependent Repos: 453,457
Dependent Packages: 97,210
Downloads: 273,533,655
Ranking: Top 0.0542% by dependent repos Top 0.0039% by downloads Top 0.0009% by dependent pkgs
PR Status
Open 35,899 (51.2%)
Merged 7,938 (11.3%)
Closed 24,639 (35.1%)
PR Types
Major 7,494 (10.7%)
Minor 52,988 (75.5%)
Patch 5,719 (8.2%)
Removal 2,160 (3.1%)