Back to Database
Status published
High
CVE-2019-10742
Axios up to and including 0.18.0 allows attackers to cause...
Vulnerability Description
Axios up to and including 0.18.0 allows attackers to cause a denial of service (application crash) by continuing to accepting content after maxContentLength is exceeded.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-10742
Credits & Attribution
No credits recorded in the NVD database.
References
More from axios
View All →CVE-2025-62718
Axios has a NO_PROXY Hostname Normalization Bypass that Leads to SSRF
Medium
6.3
CVE-2025-58754
Axios is vulnerable to DoS attack through lack of data size check
High
7.5
CVE-2025-27152
Possible SSRF and Credential Leakage via Absolute URL in axios Requests
High
7.7
CVE-2024-57965
In axios before 1.7.8, lib/helpers/isURLSameOrigin.js does not use a URL...
Unknown
0
CVE-2021-3749
Inefficient Regular Expression Complexity in axios/axios
High
7.5
Affected Vendor
axios
View all reports →Affected Software
axios
Vulnerable Versions:
through 0.18.0
Timeline
Official Publish:
May 7th, 2019
Last Modified:
August 4th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.