Warning, version 1.14.1 of the npm core package axios is experiencing an active supply chain attack
According to market news, Socket has detected that version 1.14.1 of the npm core package axios is experiencing an active supply chain attack. The attacker injected a malicious dependency package to implant malicious code into axios. Developers using axios are advised to immediately pin the version and review the project's lock files.
Related tags
Related tags








