Loading the current evidence view. Navigation and account controls remain available.
Indicator investigation
Loading the current evidence view. Navigation and account controls remain available.
Loading verdict, provenance, relationships and sightings.
Indicator
Type cve · source intel_report_ingest
Grouped attempts with latest status; expand for attempt history.
9 attempts · first 2026-07-22T01:30:50.998708Z · last 2026-08-07T11:47:52.832389Z
CVE is flagged in CISA KEV (local intel row or connector provenance)
Types: cisa_kev
34 attempts · first 2026-07-22T01:30:51.002226Z · last 2026-09-05T13:44:08.319291Z
Axios is a promise based HTTP client for the browser and Node.js. Versions prior to 1.15.0 and 0.3.1 are vulnerable to a specific gadget-style attack chain in which prototype pollution in a third-party dependency may be leveraged to inject unsanitized header values into outbound requests. This vulnerability is fixed in 1.15.0 and 0.3.1. · CWEs: CWE-113, CWE-444, CWE-918, CWE-915 · NVD configuratio
Types: nvd_local
High-signal pivots without leaving the thread you started in search.
Structured pivots from local graph context.
Full investigation canvas with neighbor expansion.