Axios has a CVSS 10 bug, risks "full cloud compromise"
Pyongyang, versus Nebraska?
Hugely popular npm package, Axios, compromised
Open source scanner compromise reveals CI/CD's vulnerable underbelly
Chainguard eyes CI/CD security with hardened Github Actions, looks to ISV images too.