Description
Axios NPM package 0.21.0 contains a Server-Side Request Forgery (SSRF) vulnerability where an attacker is able to bypass a proxy by providing a URL that responds with a redirect to a restricted host or IP address.
Remediation
References
Related Vulnerabilities
Moodle Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2020-1754)
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2017-5645)
WordPress Plugin Rate my Post-WP Rating System Multiple Vulnerabilities (3.3.4)
WordPress Plugin Form Manager Remote Command Execution (1.7.2)