Vulnerabilities/

axios-cache-interceptor Vulnerable to Cache Poisoning via Ignored HTTP Vary Header

Severity:
Medium

Description

When a server calls an upstream service using different auth tokens, axios-cache-interceptor returns incorrect cached responses, leading to authorization bypass.

Recommendation

Update the axios-cache-interceptor package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
axios-cache-interceptor
Anything's wrong? Let us know Last updated on January 05, 2026