Vendor
Axios Node.js HTTP Adapter Vulnerable to Proxy Redirection via Prototype Pollution Bypass
2 TTPsA vulnerability in Axios's Node.js HTTP adapter, affecting versions 1.15.2 and 1.16.0, allows an attacker to bypass prototype pollution hardening, enabling redirection of HTTP requests through an attacker-controlled proxy to achieve sensitive information disclosure.
ClickFix Campaign Activity
22 IOCsTracking brief for the ClickFix campaign; individual sightings are folded in as reported.
Axios Prototype Pollution Leads to Man-in-the-Middle Vulnerability
3 rules 7 TTPsAxios is vulnerable to a Prototype Pollution attack that can be escalated into a full Man-in-the-Middle (MITM) attack by injecting a malicious proxy configuration via `Object.prototype.proxy`, allowing attackers to intercept, read, and modify all HTTP traffic, including authentication credentials.
Axios Library Vulnerable to Cloud Metadata Exfiltration via Header Injection
2 rules 4 TTPs 2 IOCsThe Axios library is vulnerable to a header injection chain that allows prototype pollution in a third-party dependency to be escalated into remote code execution or full cloud compromise via AWS IMDSv2 bypass by polluting Object.prototype with CRLF characters to smuggle requests to the AWS Metadata Service.