Description
Axios up to and including 0.18.0 allows attackers to cause a denial of service (application crash) by continuing to accepting content after maxContentLength is exceeded.
Remediation
References
https://app.snyk.io/vuln/SNYK-JS-AXIOS-174505
https://github.com/axios/axios/issues/1098
https://github.com/axios/axios/pull/1485
Related Vulnerabilities
CVE-2021-23899 Vulnerability in maven package com.mikesamuel:json-sanitizer
CVE-2021-41117 Vulnerability in npm package keypair
CVE-2023-36479 Vulnerability in maven package org.eclipse.jetty:jetty-servlets
CVE-2021-3749 Vulnerability in npm package axios
CVE-2023-49620 Vulnerability in maven package org.apache.dolphinscheduler:dolphinscheduler-dao