
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2026-101899 is a proxy exclusion bypass vulnerability in the Axios npm library affecting its Node.js adapter. The flaw causes CIDR-notation entries in the NO_PROXY environment variable (e.g., 127.0.0.0/8, 10.0.0.0/8, 169.254.169.254/32) to be silently ignored, routing traffic intended to bypass the proxy through the configured proxy instead. Affected versions are >= 1.15.0, < 1.20.0 (npm package axios); browser adapters are not affected. The advisory was published on September 16, 2026, and added to the GitHub Advisory Database on September 30, 2026. It carries a CVSS v4.0 base score of 6.9 (Medium) (GitHub Advisory, Axios Security Advisory).
The root cause is a Protection Mechanism Failure (CWE-693) in lib/helpers/shouldBypassProxy.js. The function parses each NO_PROXY entry into a host and optional port, then performs exact hostname, suffix, wildcard-prefix, and loopback comparisons — but contains no logic to parse or evaluate CIDR notation. As a result, an entry like 127.0.0.0/8 is treated as a literal hostname token that never matches any request target IP, causing all requests to IPs within that range to be forwarded through the configured proxy. The vulnerability is exploitable whenever an application runs in a Node.js environment with both HTTP_PROXY/HTTPS_PROXY and CIDR-form NO_PROXY environment variables set; no privileges or user interaction are required, though a proxy must already be configured (Attack Requirements: Present). A public proof-of-concept demonstrating the bypass is included in the advisory (GitHub Advisory, Axios Security Advisory).
The primary impact is confidentiality exposure on downstream/subsequent systems (rated High in CVSS v4.0), with no direct impact on the vulnerable system itself. For plaintext HTTP targets, a proxy positioned outside the intended trust boundary can observe and modify request URLs, headers, and bodies — potentially exposing internal hostnames, API paths, authentication tokens, or credentials. For HTTPS targets, the proxy receives CONNECT tunnel requests and observes connection metadata. Environments most at risk include CI/CD runners with injected proxy variables, Kubernetes workloads using CIDR-based NO_PROXY for cluster-internal ranges, containers inheriting proxy settings from orchestrators, and cloud workloads relying on NO_PROXY to protect access to instance metadata services (e.g., 169.254.169.254) (GitHub Advisory, Axios Security Advisory).
A public proof-of-concept is included in the official advisory and can be reproduced with a simple Node.js script using standard http and axios modules. There is no evidence of in-the-wild exploitation reported at this time, no known threat actor attribution, and the CVE status remains "Reserved" in the NVD. The vulnerability is not listed in the CISA KEV catalog. Exploitation requires a pre-existing proxy configuration in the target environment, limiting opportunistic exploitation, but the condition is common in enterprise, CI/CD, and cloud-native deployments (GitHub Advisory, Axios Security Advisory).
>= 1.15.0, < 1.20.0 in an environment where HTTP_PROXY or HTTPS_PROXY is set and NO_PROXY contains CIDR-notation entries (e.g., NO_PROXY=10.0.0.0/8 or NO_PROXY=169.254.169.254/32).NO_PROXY — for example, a request to http://169.254.169.254/latest/meta-data/ (cloud metadata) or an internal Kubernetes service IP.shouldBypassProxy() returns false for the target IP, and the request is routed through the configured proxy. The proxy receives the full request including URL, headers, and body.10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16, 127.0.0.0/8, 169.254.169.254); proxy access logs showing requests to cloud metadata endpoints (169.254.169.254) or Kubernetes cluster-internal IPs routed through the proxy.NO_PROXY policy; application logs showing successful responses from internal services via proxy rather than direct connection.HTTP_PROXY/HTTPS_PROXY environment variables alongside CIDR-form NO_PROXY entries in Node.js process environments running axios >= 1.15.0, < 1.20.0.Upgrade axios to version 1.20.0 or later, which adds full IPv4 and IPv6 CIDR matching to NO_PROXY/no_proxy in the shouldBypassProxy helper (Axios v1.20.0 Release, Fix PR #11141). If immediate upgrade is not possible, apply the following workarounds:
NO_PROXY with explicit exact IP or hostname entries for all sensitive destinations (e.g., NO_PROXY=127.0.0.1,localhost,169.254.169.254,10.0.0.1,...).proxy: false in the axios request configuration.NO_PROXY entries (GitHub Advisory).The advisory was published by axios maintainer jasonsaayman on September 16, 2026, and the fix was merged via PR #11141 on August 12, 2026, ahead of the public disclosure. The fix was bundled into the v1.20.0 release on August 19, 2026. Downstream projects such as icanbwell/fhir-server and open-metadata/OpenMetadata promptly bumped their axios dependency to ^1.20.0 following the advisory publication. No significant independent researcher commentary or broad media coverage has been identified at this time (Axios v1.20.0 Release, Fix PR #11141).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."