DataDog / datadog-ci

Use Datadog from your CI.
https://datadoghq.com
Apache License 2.0
127 stars 55 forks source link

[Vulnerabilities] - fast-xml-parser vulnerabilities fixed by @aws-sdk #914

Closed mbriand-lucca closed 1 year ago

mbriand-lucca commented 1 year ago

Bug description

When I launched a npm ci, I found 9 vulnerabilities caused by fast-xml-parser used in @aws-sdk/** modules.

Describe what you expected

It will be nice to upgrade to v3.347.1 for @aws-sdk/** modules to get this fix about this vulnerability.

Command

npm ci

fdoe commented 1 year ago

This is the underlying CVE report for fast-xml-parser.

JeanBeaurepaire commented 1 year ago

Fixed in https://github.com/DataDog/datadog-ci/pull/913