[Subscribe Now] Track A-Level Transparency Project Biweekly Report and Discover the Top 1% of Projects
API Download the RootData App

Warning, version 1.14.1 of the npm core package axios is experiencing an active supply chain attack

Mar 31, 2026 13:04:54

Share to

According to market news, Socket has detected that version 1.14.1 of the npm core package axios is experiencing an active supply chain attack. The attacker injected a malicious dependency package to implant malicious code into axios. Developers using axios are advised to immediately pin the version and review the project's lock files.

Recent Fundraising

More
$5M Apr 3
$1M Apr 2
-- Apr 2

New Tokens

More
Mar 30
Mar 23
edgeX EDGE
Mar 19

Latest Updates on 𝕏

More