Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-45857

An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 30.9%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2023-45857
  • Axios » Axios » Version: 1.5.1
    cpe:2.3:a:axios:axios:1.5.1


Contact Us

Shodan ® - All rights reserved