Gallery

Contacts

405 W. Greenlawn Ave Lansing, Michigan 48910

contact@techjacksolutions.com

+1-616-320-4064

A credential leak vulnerability in the Axios HTTP client library (GHSA-p92q-9vqr-4j8v) allows proxy authentication credentials to be forwarded to unintended origin servers when an HTTP request is redirected to HTTPS. Any Node.js application using Axios with proxy authentication is potentially exposed, meaning proxy credentials, and any access they control, may be compromised. The business risk is unauthorized access to internal systems or third-party services protected by those proxy credentials.

Author

Tech Jacks Solutions