René's URL Explorer Experiment


Title: [Snyk] Security upgrade xml2js from 0.4.23 to 0.5.0 by rfelber · Pull Request #1680 · secureCodeBox/secureCodeBox · GitHub

Open Graph Title: [Snyk] Security upgrade xml2js from 0.4.23 to 0.5.0 by rfelber · Pull Request #1680 · secureCodeBox/secureCodeBox

X Title: [Snyk] Security upgrade xml2js from 0.4.23 to 0.5.0 by rfelber · Pull Request #1680 · secureCodeBox/secureCodeBox

Description: This PR was automatically created by Snyk using the credentials of a real user.Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dependencies to a fixed version: scanners/nmap/parser/package.json scanners/nmap/parser/package-lock.json Vulnerabilities that will be fixed With an upgrade: Severity Priority Score (*) Issue Breaking Change Exploit Maturity 758/1000 Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 7.3 Prototype Pollution SNYK-JS-XML2JS-5414874 No Proof of Concept (*) Note that the real score may have changed since the PR was raised. Commit messages Package name: xml2js The new version differs by 18 commits. bd0f780 Bump dependency versions to fix security issues 3a8d46e Update lockfile 9f730bb Update package.json with latest PR 50a492a Merge pull request #603 from autopulated/master 7bc3c5d Merge pull request #598 from fnimick/master f412a12 Merge pull request #635 from wisesimpson/patch-1 d318ce0 Update README.md 581b19a use Object.create(null) to create all parsed objects (prevent prototype replacement) a212950 Add documentation for `explicitCharkey` option 1832e0b Merge pull request #512 from economia/master 198063c Merge pull request #556 from Omega-Ariston/fix-issue544 0d71785 Merge pull request #562 from Omega-Ariston/addDocExample a44bad4 Update README.md a3ae596 append example to README for issue #552 aad6dd6 fix issue554 fa32064 readme updated with default empty tag as function f074644 cr fixes (will be squashed after another cr) 19a4c2f Call function for emptyTag if specified See the full diff Check the changes in this PR to ensure they won't cause issues with your project. Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs. For more information: 🧐 View latest project report 🛠 Adjust project settings 📚 Read more about Snyk's upgrade and patch logic Learn how to fix vulnerabilities with free interactive lessons: 🦉 Prototype Pollution

Open Graph Description: This PR was automatically created by Snyk using the credentials of a real user.Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes inc...

X Description: This PR was automatically created by Snyk using the credentials of a real user.Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes inc...

Opengraph URL: https://github.com/secureCodeBox/secureCodeBox/pull/1680

X: @github

direct link

Domain: github.com

route-pattern/:user_id/:repository/pull/:id/files(.:format)
route-controllerpull_requests
route-actionfiles
fetch-noncev2:9558206f-7572-238c-8883-fce34479c96f
current-catalog-service-hashae870bc5e265a340912cde392f23dad3671a0a881730ffdadd82f2f57d81641b
request-idBFD6:336334:15F1C0:1EE23F:69789429
html-safe-nonce0b3772ca04a743ec7d1863e03a28674b85654771b5096e8bd7537cf00e5f58dc
visitor-payloadeyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJCRkQ2OjMzNjMzNDoxNUYxQzA6MUVFMjNGOjY5Nzg5NDI5IiwidmlzaXRvcl9pZCI6IjYyNTA2NDIzNjIwNzQ2OTg3OTMiLCJyZWdpb25fZWRnZSI6ImlhZCIsInJlZ2lvbl9yZW5kZXIiOiJpYWQifQ==
visitor-hmac6013c91490e38ccac04da103cb54021d437ea206ac0416ed44ae44b96a5b18bd
hovercard-subject-tagpull_request:1306775591
github-keyboard-shortcutsrepository,pull-request-list,pull-request-conversation,pull-request-files-changed,copilot
google-site-verificationApib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I
octolytics-urlhttps://collector.github.com/github/collect
analytics-location///pull_requests/show/files
fb:app_id1401488693436528
apple-itunes-appapp-id=1477376905, app-argument=https://github.com/secureCodeBox/secureCodeBox/pull/1680/files
twitter:imagehttps://avatars.githubusercontent.com/u/7081348?s=400&v=4
twitter:cardsummary_large_image
og:imagehttps://avatars.githubusercontent.com/u/7081348?s=400&v=4
og:image:altThis PR was automatically created by Snyk using the credentials of a real user.Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes inc...
og:site_nameGitHub
og:typeobject
hostnamegithub.com
expected-hostnamegithub.com
None2981c597c945c1d90ac6fa355ce7929b2f413dfe7872ca5c435ee53a24a1de50
turbo-cache-controlno-preview
diff-viewunified
go-importgithub.com/secureCodeBox/secureCodeBox git https://github.com/secureCodeBox/secureCodeBox.git
octolytics-dimension-user_id34573705
octolytics-dimension-user_loginsecureCodeBox
octolytics-dimension-repository_id80711933
octolytics-dimension-repository_nwosecureCodeBox/secureCodeBox
octolytics-dimension-repository_publictrue
octolytics-dimension-repository_is_forkfalse
octolytics-dimension-repository_network_root_id80711933
octolytics-dimension-repository_network_root_nwosecureCodeBox/secureCodeBox
turbo-body-classeslogged-out env-production page-responsive full-width
disable-turbotrue
browser-stats-urlhttps://api.github.com/_private/browser/stats
browser-errors-urlhttps://api.github.com/_private/browser/errors
release14920c7cb7d7c207b5e72684d0e6f23b65b849b3
ui-targetfull
theme-color#1e2327
color-schemelight dark

Links:

Skip to contenthttps://github.com/secureCodeBox/secureCodeBox/pull/1680/changes#start-of-content
https://github.com/
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2FsecureCodeBox%2FsecureCodeBox%2Fpull%2F1680%2Ffiles
GitHub CopilotWrite better code with AIhttps://github.com/features/copilot
GitHub SparkBuild and deploy intelligent appshttps://github.com/features/spark
GitHub ModelsManage and compare promptshttps://github.com/features/models
MCP RegistryNewIntegrate external toolshttps://github.com/mcp
ActionsAutomate any workflowhttps://github.com/features/actions
CodespacesInstant dev environmentshttps://github.com/features/codespaces
IssuesPlan and track workhttps://github.com/features/issues
Code ReviewManage code changeshttps://github.com/features/code-review
GitHub Advanced SecurityFind and fix vulnerabilitieshttps://github.com/security/advanced-security
Code securitySecure your code as you buildhttps://github.com/security/advanced-security/code-security
Secret protectionStop leaks before they starthttps://github.com/security/advanced-security/secret-protection
Why GitHubhttps://github.com/why-github
Documentationhttps://docs.github.com
Bloghttps://github.blog
Changeloghttps://github.blog/changelog
Marketplacehttps://github.com/marketplace
View all featureshttps://github.com/features
Enterpriseshttps://github.com/enterprise
Small and medium teamshttps://github.com/team
Startupshttps://github.com/enterprise/startups
Nonprofitshttps://github.com/solutions/industry/nonprofits
App Modernizationhttps://github.com/solutions/use-case/app-modernization
DevSecOpshttps://github.com/solutions/use-case/devsecops
DevOpshttps://github.com/solutions/use-case/devops
CI/CDhttps://github.com/solutions/use-case/ci-cd
View all use caseshttps://github.com/solutions/use-case
Healthcarehttps://github.com/solutions/industry/healthcare
Financial serviceshttps://github.com/solutions/industry/financial-services
Manufacturinghttps://github.com/solutions/industry/manufacturing
Governmenthttps://github.com/solutions/industry/government
View all industrieshttps://github.com/solutions/industry
View all solutionshttps://github.com/solutions
AIhttps://github.com/resources/articles?topic=ai
Software Developmenthttps://github.com/resources/articles?topic=software-development
DevOpshttps://github.com/resources/articles?topic=devops
Securityhttps://github.com/resources/articles?topic=security
View all topicshttps://github.com/resources/articles
Customer storieshttps://github.com/customer-stories
Events & webinarshttps://github.com/resources/events
Ebooks & reportshttps://github.com/resources/whitepapers
Business insightshttps://github.com/solutions/executive-insights
GitHub Skillshttps://skills.github.com
Documentationhttps://docs.github.com
Customer supporthttps://support.github.com
Community forumhttps://github.com/orgs/community/discussions
Trust centerhttps://github.com/trust-center
Partnershttps://github.com/partners
GitHub SponsorsFund open source developershttps://github.com/sponsors
Security Labhttps://securitylab.github.com
Maintainer Communityhttps://maintainers.github.com
Acceleratorhttps://github.com/accelerator
Archive Programhttps://archiveprogram.github.com
Topicshttps://github.com/topics
Trendinghttps://github.com/trending
Collectionshttps://github.com/collections
Enterprise platformAI-powered developer platformhttps://github.com/enterprise
GitHub Advanced SecurityEnterprise-grade security featureshttps://github.com/security/advanced-security
Copilot for BusinessEnterprise-grade AI featureshttps://github.com/features/copilot/copilot-business
Premium SupportEnterprise-grade 24/7 supporthttps://github.com/premium-support
Pricinghttps://github.com/pricing
Search syntax tipshttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
documentationhttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2FsecureCodeBox%2FsecureCodeBox%2Fpull%2F1680%2Ffiles
Sign up https://github.com/signup?ref_cta=Sign+up&ref_loc=header+logged+out&ref_page=%2F%3Cuser-name%3E%2F%3Crepo-name%3E%2Fpull_requests%2Fshow%2Ffiles&source=header-repo&source_repo=secureCodeBox%2FsecureCodeBox
Reloadhttps://github.com/secureCodeBox/secureCodeBox/pull/1680/changes
Reloadhttps://github.com/secureCodeBox/secureCodeBox/pull/1680/changes
Reloadhttps://github.com/secureCodeBox/secureCodeBox/pull/1680/changes
secureCodeBox https://github.com/secureCodeBox
secureCodeBoxhttps://github.com/secureCodeBox/secureCodeBox
Notifications https://github.com/login?return_to=%2FsecureCodeBox%2FsecureCodeBox
Fork 178 https://github.com/login?return_to=%2FsecureCodeBox%2FsecureCodeBox
Star 950 https://github.com/login?return_to=%2FsecureCodeBox%2FsecureCodeBox
Code https://github.com/secureCodeBox/secureCodeBox
Issues 72 https://github.com/secureCodeBox/secureCodeBox/issues
Pull requests 9 https://github.com/secureCodeBox/secureCodeBox/pulls
Discussions https://github.com/secureCodeBox/secureCodeBox/discussions
Actions https://github.com/secureCodeBox/secureCodeBox/actions
Projects 1 https://github.com/secureCodeBox/secureCodeBox/projects
Security 1 https://github.com/secureCodeBox/secureCodeBox/security
Insights https://github.com/secureCodeBox/secureCodeBox/pulse
Code https://github.com/secureCodeBox/secureCodeBox
Issues https://github.com/secureCodeBox/secureCodeBox/issues
Pull requests https://github.com/secureCodeBox/secureCodeBox/pulls
Discussions https://github.com/secureCodeBox/secureCodeBox/discussions
Actions https://github.com/secureCodeBox/secureCodeBox/actions
Projects https://github.com/secureCodeBox/secureCodeBox/projects
Security https://github.com/secureCodeBox/secureCodeBox/security
Insights https://github.com/secureCodeBox/secureCodeBox/pulse
Sign up for GitHub https://github.com/signup?return_to=%2FsecureCodeBox%2FsecureCodeBox%2Fissues%2Fnew%2Fchoose
terms of servicehttps://docs.github.com/terms
privacy statementhttps://docs.github.com/privacy
Sign inhttps://github.com/login?return_to=%2FsecureCodeBox%2FsecureCodeBox%2Fissues%2Fnew%2Fchoose
rfelberhttps://github.com/rfelber
mainhttps://github.com/secureCodeBox/secureCodeBox/tree/main
snyk-fix-b8fe9ed50b7a810a5b09f63a2e374fddhttps://github.com/secureCodeBox/secureCodeBox/tree/snyk-fix-b8fe9ed50b7a810a5b09f63a2e374fdd
Conversation 2 https://github.com/secureCodeBox/secureCodeBox/pull/1680
Commits 1 https://github.com/secureCodeBox/secureCodeBox/pull/1680/commits
Checks 0 https://github.com/secureCodeBox/secureCodeBox/pull/1680/checks
Files changed https://github.com/secureCodeBox/secureCodeBox/pull/1680/files
Please reload this pagehttps://github.com/secureCodeBox/secureCodeBox/pull/1680/changes
[Snyk] Security upgrade xml2js from 0.4.23 to 0.5.0 https://github.com/secureCodeBox/secureCodeBox/pull/1680/changes#top
Show all changes 1 commit https://github.com/secureCodeBox/secureCodeBox/pull/1680/files
c1a8695 fix: scanners/nmap/parser/package.json & scanners/nmap/parser/package… snyk-bot Apr 9, 2023 https://github.com/secureCodeBox/secureCodeBox/pull/1680/commits/c1a86952a79ce2ab19c896d86d0143304d24a5a3
Clear filters https://github.com/secureCodeBox/secureCodeBox/pull/1680/files
Please reload this pagehttps://github.com/secureCodeBox/secureCodeBox/pull/1680/changes
Please reload this pagehttps://github.com/secureCodeBox/secureCodeBox/pull/1680/changes
package-lock.json https://github.com/secureCodeBox/secureCodeBox/pull/1680/changes#diff-561a640f97dee77e684615c72bbcfe712edd9eb9b4ccc444927242ab84fc5d31
package.json https://github.com/secureCodeBox/secureCodeBox/pull/1680/changes#diff-7fbbc20ac915cd0bc930dc6e355a592ce67168e43a0634166ae59c7e34dd6272
scanners/nmap/parser/package-lock.jsonhttps://github.com/secureCodeBox/secureCodeBox/pull/1680/changes#diff-561a640f97dee77e684615c72bbcfe712edd9eb9b4ccc444927242ab84fc5d31
View file https://github.com/secureCodeBox/secureCodeBox/blob/c1a86952a79ce2ab19c896d86d0143304d24a5a3/scanners/nmap/parser/package-lock.json
Open in desktop https://desktop.github.com
how customized files appear on GitHubhttps://docs.github.com/github/administering-a-repository/customizing-how-changed-files-appear-on-github
Please reload this pagehttps://github.com/secureCodeBox/secureCodeBox/pull/1680/changes
scanners/nmap/parser/package.jsonhttps://github.com/secureCodeBox/secureCodeBox/pull/1680/changes#diff-7fbbc20ac915cd0bc930dc6e355a592ce67168e43a0634166ae59c7e34dd6272
View file https://github.com/secureCodeBox/secureCodeBox/blob/c1a86952a79ce2ab19c896d86d0143304d24a5a3/scanners/nmap/parser/package.json
Open in desktop https://desktop.github.com
https://github.co/hiddenchars
https://github.com/secureCodeBox/secureCodeBox/pull/1680/{{ revealButtonHref }}
https://github.com/secureCodeBox/secureCodeBox/pull/1680/changes#diff-7fbbc20ac915cd0bc930dc6e355a592ce67168e43a0634166ae59c7e34dd6272
https://github.com
Termshttps://docs.github.com/site-policy/github-terms/github-terms-of-service
Privacyhttps://docs.github.com/site-policy/privacy-policies/github-privacy-statement
Securityhttps://github.com/security
Statushttps://www.githubstatus.com/
Communityhttps://github.community/
Docshttps://docs.github.com/
Contacthttps://support.github.com?tags=dotcom-footer

Viewport: width=device-width


URLs of crawlers that visited me.