Количество 7
Количество 7
GHSA-wf5p-g6vw-rhxx
Axios Cross-Site Request Forgery Vulnerability

CVE-2023-45857
An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information.

CVE-2023-45857
An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information.

CVE-2023-45857
An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information.
CVE-2023-45857
An issue discovered in Axios 1.5.1 inadvertently reveals the confident ...

BDU:2024-02118
Уязвимость библиотеки axios, связанная с подделкой межсайтовых запросов, позволяющая нарушителю получить несанкционированный доступ к токену XSRF-TOKEN

ROS-20241029-08
Множественные уязвимости opensearch
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-wf5p-g6vw-rhxx Axios Cross-Site Request Forgery Vulnerability | CVSS3: 6.5 | 0% Низкий | больше 1 года назад | |
![]() | CVE-2023-45857 An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information. | CVSS3: 6.5 | 0% Низкий | больше 1 года назад |
![]() | CVE-2023-45857 An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information. | CVSS3: 6.5 | 0% Низкий | больше 1 года назад |
![]() | CVE-2023-45857 An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information. | CVSS3: 6.5 | 0% Низкий | больше 1 года назад |
CVE-2023-45857 An issue discovered in Axios 1.5.1 inadvertently reveals the confident ... | CVSS3: 6.5 | 0% Низкий | больше 1 года назад | |
![]() | BDU:2024-02118 Уязвимость библиотеки axios, связанная с подделкой межсайтовых запросов, позволяющая нарушителю получить несанкционированный доступ к токену XSRF-TOKEN | CVSS3: 6.5 | 0% Низкий | больше 1 года назад |
![]() | ROS-20241029-08 Множественные уязвимости opensearch | CVSS3: 7.5 | 8 месяцев назад |
Уязвимостей на страницу