URGENT: The Axios npm Package Was Just Compromised!
javascript
dev.to
Hey everyone! 👋 If you build web apps, you need to check your package.json immediately. We are looking at one of the biggest software supply chain attacks of the year today. Cybersecurity researchers just confirmed a massive breach involving the hugely popular axios npm package. Hackers managed to compromise the library and inject malicious code into a recent patch version. Why is this an absolute nightmare for developers? Axios is downloaded tens of millions of times every single week. I