We would like to update the versions of the AWS SDK to one that depends on fast-xml-parser 4.2.5 instead of 4.1.2. 4.1.2 is vulnerable to https://www.cve.org/CVERecord?id=CVE-2023-34104, while 4.2.5 is not.
I ran the simple example against an MSK cluster we have and it authenticated without any issues. If there are any other changes you'd like or steps you want me to follow, just let me know.
Hi!
We would like to update the versions of the AWS SDK to one that depends on fast-xml-parser 4.2.5 instead of 4.1.2. 4.1.2 is vulnerable to https://www.cve.org/CVERecord?id=CVE-2023-34104, while 4.2.5 is not.
I ran the simple example against an MSK cluster we have and it authenticated without any issues. If there are any other changes you'd like or steps you want me to follow, just let me know.
Thanks!