See Console and Network tabs of your browser's Developer Tools for further details
Note that the X-CSRF-Token value is in the Axios config.headers; it is not a response header set by the server.
X-CSRF-Token
config.headers