Package Health

axios

Promise based HTTP client for the browser and node.js

Latest 1.13.6NPMNPM

77%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

51

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

85

Attestations
Attestations
Measures the presence and validity of package attestations and signatures

47

Vulnerabilities

TitleVersionsSeverity
CVE-2026-25639
axios is vulnerable to Improper Check for Unusual or Exceptional Conditions in versions 1.0.0 - 1.13.4 and 0.0.0 - 0.30.2.
0.0.0 - 0.30.21.0.0 - 1.13.4
High
CVE-2025-58754
axios is vulnerable to Allocation of Resources Without Limits or Throttling in versions 1.0.0 - 1.12.0 and 0.28.0 - 0.30.2.
0.28.0 - 0.30.21.0.0 - 1.12.0
High
CVE-2025-54371
axios is vulnerable to Security Vulnerability in versions 1.10.0 - 1.10.0.
1.10.0 - 1.10.0
High
AIKIDO-2025-10185
axios is vulnerable to Server-side Request Forgery (SSRF) in versions 0.19.1 - 0.29.0 and 1.0.0 - 1.8.2.
0.19.1 - 0.29.01.0.0 - 1.8.2
Medium
CVE-2024-39338
axios is vulnerable to Server-Side Request Forgery (SSRF) in versions 1.3.2 - 1.7.3.
1.3.2 - 1.7.3
High

Package versions

Direct Dependencies

DependencyLast ReleaseScore
form-data
Version ^4.0.5
proxy-from-env
Version ^1.1.0
follow-redirects
Version ^1.15.11

Weekly Downloads

Info

Last Published
9 hours ago
Created
11 years ago
Unpacked Size
2.4 MB