Skip to content

fix: fast-xml-parser version#1335

Merged
prakashsvmx merged 1 commit intominio:masterfrom
mirpo:fix_fast_xml
Aug 15, 2024
Merged

fix: fast-xml-parser version#1335
prakashsvmx merged 1 commit intominio:masterfrom
mirpo:fix_fast_xml

Conversation

@mirpo
Copy link
Copy Markdown
Contributor

@mirpo mirpo commented Aug 14, 2024

Even though this PR was merged #1328
npm pulls "fast-xml-parser": "^4.2.2" from package.json
Which has Regular Expression Denial of Service (ReDoS) https://security.snyk.io/package/npm/fast-xml-parser

Screenshot 2024-08-14 at 15 17 19

@prakashsvmx prakashsvmx merged commit c815400 into minio:master Aug 15, 2024
@mirpo mirpo deleted the fix_fast_xml branch August 15, 2024 07:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants