CVE-2026-101905

CVE-2026-101905 published: Axios is a promise-based HTTP client for the browser and Node.js. From 1.15.2 until 1.20.0, the Node HTTP adapter in lib/adapters/http.js supplies request options without an own createConnection value. A separate same-process prototype-pollution flaw places...

View full NVD advisory → ← Back to CVE watch