CVE-2026-44494 - Axios: Full Man-in-the-Middle via Prototype Pollution Gadget in `config.proxy`
CVE ID :CVE-2026-44494 Published : June 11, 2026, 5:16 p.m. | 1 hour, 48 minutes ago Description :Axios is a promise based HTTP client for the browser and Node.js. From 1.0.0 to before 1.16.0, the Axios library is vulnerable to a Prototype Pollution "Gadget" attack that allows any...