Dear Clients,
in response to the recently disclosed supply chain attack involving the Axios npm package (malicious versions 1.14.1 and 0.30.4), Žejn Group has performed a comprehensive audit of our codebases, dependencies, and build pipelines.
Our analysis confirms that:
- The Axios library is not included in our applications or services
- No affected versions were present in our development, CI/CD, or production environments
- Our systems are therefore not exposed to this specific incident
We maintain strict dependency management and security review processes to mitigate such risks and will continue to monitor the situation.
Žejn Group