Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2023-45857

Опубликовано: 03 сент. 2025
Источник: msrc
CVSS3: 6.5
EPSS Низкий

Описание

An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information.

EPSS

Процентиль: 16%
0.00052
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 2 года назад

An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information.

CVSS3: 6.5
redhat
почти 2 года назад

An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information.

CVSS3: 6.5
nvd
почти 2 года назад

An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information.

CVSS3: 6.5
debian
почти 2 года назад

An issue discovered in Axios 1.5.1 inadvertently reveals the confident ...

CVSS3: 6.5
github
почти 2 года назад

Axios Cross-Site Request Forgery Vulnerability

EPSS

Процентиль: 16%
0.00052
Низкий

6.5 Medium

CVSS3