Skip to content

CVE on Dependencies ip, fast-xml-parser #3

@martindale

Description

@martindale

npm audit report

fast-xml-parser <4.1.2
Severity: moderate
fast-xml-parser vulnerable to Prototype Pollution through tag or attribute name - GHSA-x3cc-x39p-42qx
No fix available
node_modules/fast-xml-parser
nat-upnp-2 *
Depends on vulnerable versions of fast-xml-parser
Depends on vulnerable versions of ip
node_modules/nat-upnp-2

ip <=2.0.0
Severity: high
NPM IP package vulnerable to Server-Side Request Forgery (SSRF) attacks - GHSA-78xj-cgh5-2h22
fix available via npm audit fix
node_modules/ip

3 vulnerabilities (1 moderate, 2 high)

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions