VDB
EN

package

npm / axios

pkg:npm/axios

HIGH 8.6 npm
GHSA-pjwm-pj3p-43mv · CVE-2026-44492

axios's shouldBypassProxy does not recognize IPv4-mapped IPv6 addresses, allowing NO_PROXY bypass (incomplete fix for CVE-2025-62718)

수정: 2026. 6. 1.

HIGH 7.2 npm
GHSA-pmwg-cvhr-8vh7 · CVE-2026-42043

Axios: Incomplete Fix for CVE-2025-62718 — NO_PROXY Protection Bypassed via RFC 1122 Loopback Subnet (127.0.0.0/8) in Axios 1.15.0

수정: 2026. 5. 6.