René's URL Explorer Experiment


Title: [Snyk] Security upgrade xml2js from 0.4.23 to 0.5.0 by rfelber · Pull Request #1682 · secureCodeBox/secureCodeBox · GitHub

Open Graph Title: [Snyk] Security upgrade xml2js from 0.4.23 to 0.5.0 by rfelber · Pull Request #1682 · secureCodeBox/secureCodeBox

X Title: [Snyk] Security upgrade xml2js from 0.4.23 to 0.5.0 by rfelber · Pull Request #1682 · secureCodeBox/secureCodeBox

Description: This PR was automatically created by Snyk using the credentials of a real user.Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dependencies to a fixed version: scanners/ncrack/parser/package.json scanners/ncrack/parser/package-lock.json Vulnerabilities that will be fixed With an upgrade: Severity Priority Score (*) Issue Breaking Change Exploit Maturity 758/1000 Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 7.3 Prototype Pollution SNYK-JS-XML2JS-5414874 No Proof of Concept (*) Note that the real score may have changed since the PR was raised. Commit messages Package name: xml2js The new version differs by 18 commits. bd0f780 Bump dependency versions to fix security issues 3a8d46e Update lockfile 9f730bb Update package.json with latest PR 50a492a Merge pull request #603 from autopulated/master 7bc3c5d Merge pull request #598 from fnimick/master f412a12 Merge pull request #635 from wisesimpson/patch-1 d318ce0 Update README.md 581b19a use Object.create(null) to create all parsed objects (prevent prototype replacement) a212950 Add documentation for `explicitCharkey` option 1832e0b Merge pull request #512 from economia/master 198063c Merge pull request #556 from Omega-Ariston/fix-issue544 0d71785 Merge pull request #562 from Omega-Ariston/addDocExample a44bad4 Update README.md a3ae596 append example to README for issue #552 aad6dd6 fix issue554 fa32064 readme updated with default empty tag as function f074644 cr fixes (will be squashed after another cr) 19a4c2f Call function for emptyTag if specified See the full diff Check the changes in this PR to ensure they won't cause issues with your project. Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs. For more information: 🧐 View latest project report 🛠 Adjust project settings 📚 Read more about Snyk's upgrade and patch logic Learn how to fix vulnerabilities with free interactive lessons: 🦉 Prototype Pollution

Open Graph Description: This PR was automatically created by Snyk using the credentials of a real user.Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes inc...

X Description: This PR was automatically created by Snyk using the credentials of a real user.Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes inc...

Opengraph URL: https://github.com/secureCodeBox/secureCodeBox/pull/1682

X: @github

direct link

Domain: github.com

route-pattern/:user_id/:repository/pull/:id/files(.:format)
route-controllerpull_requests
route-actionfiles
fetch-noncev2:2d480430-8157-70c0-cacc-8084337d5466
current-catalog-service-hashae870bc5e265a340912cde392f23dad3671a0a881730ffdadd82f2f57d81641b
request-idB87C:1D1BED:242D102:335DC78:6978F18A
html-safe-nonce975dae399bbe693eb91fbd75ca445f5dada555e055d37d0f210ecc1c55d9ac3d
visitor-payloadeyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJCODdDOjFEMUJFRDoyNDJEMTAyOjMzNURDNzg6Njk3OEYxOEEiLCJ2aXNpdG9yX2lkIjoiNTY3MzQ4NTc3MjI3NTY3NDk4IiwicmVnaW9uX2VkZ2UiOiJpYWQiLCJyZWdpb25fcmVuZGVyIjoiaWFkIn0=
visitor-hmacd7548bb12806ad829ecdcbc63dd2434546ceeec5d96e025d69a246f282d482ea
hovercard-subject-tagpull_request:1307981414
github-keyboard-shortcutsrepository,pull-request-list,pull-request-conversation,pull-request-files-changed,copilot
google-site-verificationApib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I
octolytics-urlhttps://collector.github.com/github/collect
analytics-location///pull_requests/show/files
fb:app_id1401488693436528
apple-itunes-appapp-id=1477376905, app-argument=https://github.com/secureCodeBox/secureCodeBox/pull/1682/files
twitter:imagehttps://avatars.githubusercontent.com/u/7081348?s=400&v=4
twitter:cardsummary_large_image
og:imagehttps://avatars.githubusercontent.com/u/7081348?s=400&v=4
og:image:altThis PR was automatically created by Snyk using the credentials of a real user.Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes inc...
og:site_nameGitHub
og:typeobject
hostnamegithub.com
expected-hostnamegithub.com
Nonec40c9bad9c4b2cfe609e749f674545a67fecd9d2e285d6b2d23ff834843964e3
turbo-cache-controlno-preview
diff-viewunified
go-importgithub.com/secureCodeBox/secureCodeBox git https://github.com/secureCodeBox/secureCodeBox.git
octolytics-dimension-user_id34573705
octolytics-dimension-user_loginsecureCodeBox
octolytics-dimension-repository_id80711933
octolytics-dimension-repository_nwosecureCodeBox/secureCodeBox
octolytics-dimension-repository_publictrue
octolytics-dimension-repository_is_forkfalse
octolytics-dimension-repository_network_root_id80711933
octolytics-dimension-repository_network_root_nwosecureCodeBox/secureCodeBox
turbo-body-classeslogged-out env-production page-responsive full-width
disable-turbotrue
browser-stats-urlhttps://api.github.com/_private/browser/stats
browser-errors-urlhttps://api.github.com/_private/browser/errors
releaseedfe5922733dbae8b1bc0bfb1f64f84de0652b67
ui-targetcanary-2
theme-color#1e2327
color-schemelight dark

Links:

Skip to contenthttps://github.com/secureCodeBox/secureCodeBox/pull/1682/files#start-of-content
https://github.com/
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2FsecureCodeBox%2FsecureCodeBox%2Fpull%2F1682%2Ffiles
GitHub CopilotWrite better code with AIhttps://github.com/features/copilot
GitHub SparkBuild and deploy intelligent appshttps://github.com/features/spark
GitHub ModelsManage and compare promptshttps://github.com/features/models
MCP RegistryNewIntegrate external toolshttps://github.com/mcp
ActionsAutomate any workflowhttps://github.com/features/actions
CodespacesInstant dev environmentshttps://github.com/features/codespaces
IssuesPlan and track workhttps://github.com/features/issues
Code ReviewManage code changeshttps://github.com/features/code-review
GitHub Advanced SecurityFind and fix vulnerabilitieshttps://github.com/security/advanced-security
Code securitySecure your code as you buildhttps://github.com/security/advanced-security/code-security
Secret protectionStop leaks before they starthttps://github.com/security/advanced-security/secret-protection
Why GitHubhttps://github.com/why-github
Documentationhttps://docs.github.com
Bloghttps://github.blog
Changeloghttps://github.blog/changelog
Marketplacehttps://github.com/marketplace
View all featureshttps://github.com/features
Enterpriseshttps://github.com/enterprise
Small and medium teamshttps://github.com/team
Startupshttps://github.com/enterprise/startups
Nonprofitshttps://github.com/solutions/industry/nonprofits
App Modernizationhttps://github.com/solutions/use-case/app-modernization
DevSecOpshttps://github.com/solutions/use-case/devsecops
DevOpshttps://github.com/solutions/use-case/devops
CI/CDhttps://github.com/solutions/use-case/ci-cd
View all use caseshttps://github.com/solutions/use-case
Healthcarehttps://github.com/solutions/industry/healthcare
Financial serviceshttps://github.com/solutions/industry/financial-services
Manufacturinghttps://github.com/solutions/industry/manufacturing
Governmenthttps://github.com/solutions/industry/government
View all industrieshttps://github.com/solutions/industry
View all solutionshttps://github.com/solutions
AIhttps://github.com/resources/articles?topic=ai
Software Developmenthttps://github.com/resources/articles?topic=software-development
DevOpshttps://github.com/resources/articles?topic=devops
Securityhttps://github.com/resources/articles?topic=security
View all topicshttps://github.com/resources/articles
Customer storieshttps://github.com/customer-stories
Events & webinarshttps://github.com/resources/events
Ebooks & reportshttps://github.com/resources/whitepapers
Business insightshttps://github.com/solutions/executive-insights
GitHub Skillshttps://skills.github.com
Documentationhttps://docs.github.com
Customer supporthttps://support.github.com
Community forumhttps://github.com/orgs/community/discussions
Trust centerhttps://github.com/trust-center
Partnershttps://github.com/partners
GitHub SponsorsFund open source developershttps://github.com/sponsors
Security Labhttps://securitylab.github.com
Maintainer Communityhttps://maintainers.github.com
Acceleratorhttps://github.com/accelerator
Archive Programhttps://archiveprogram.github.com
Topicshttps://github.com/topics
Trendinghttps://github.com/trending
Collectionshttps://github.com/collections
Enterprise platformAI-powered developer platformhttps://github.com/enterprise
GitHub Advanced SecurityEnterprise-grade security featureshttps://github.com/security/advanced-security
Copilot for BusinessEnterprise-grade AI featureshttps://github.com/features/copilot/copilot-business
Premium SupportEnterprise-grade 24/7 supporthttps://github.com/premium-support
Pricinghttps://github.com/pricing
Search syntax tipshttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
documentationhttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2FsecureCodeBox%2FsecureCodeBox%2Fpull%2F1682%2Ffiles
Sign up https://github.com/signup?ref_cta=Sign+up&ref_loc=header+logged+out&ref_page=%2F%3Cuser-name%3E%2F%3Crepo-name%3E%2Fpull_requests%2Fshow%2Ffiles&source=header-repo&source_repo=secureCodeBox%2FsecureCodeBox
Reloadhttps://github.com/secureCodeBox/secureCodeBox/pull/1682/files
Reloadhttps://github.com/secureCodeBox/secureCodeBox/pull/1682/files
Reloadhttps://github.com/secureCodeBox/secureCodeBox/pull/1682/files
secureCodeBox https://github.com/secureCodeBox
secureCodeBoxhttps://github.com/secureCodeBox/secureCodeBox
Notifications https://github.com/login?return_to=%2FsecureCodeBox%2FsecureCodeBox
Fork 178 https://github.com/login?return_to=%2FsecureCodeBox%2FsecureCodeBox
Star 951 https://github.com/login?return_to=%2FsecureCodeBox%2FsecureCodeBox
Code https://github.com/secureCodeBox/secureCodeBox
Issues 71 https://github.com/secureCodeBox/secureCodeBox/issues
Pull requests 2 https://github.com/secureCodeBox/secureCodeBox/pulls
Discussions https://github.com/secureCodeBox/secureCodeBox/discussions
Actions https://github.com/secureCodeBox/secureCodeBox/actions
Projects 1 https://github.com/secureCodeBox/secureCodeBox/projects
Security 1 https://github.com/secureCodeBox/secureCodeBox/security
Insights https://github.com/secureCodeBox/secureCodeBox/pulse
Code https://github.com/secureCodeBox/secureCodeBox
Issues https://github.com/secureCodeBox/secureCodeBox/issues
Pull requests https://github.com/secureCodeBox/secureCodeBox/pulls
Discussions https://github.com/secureCodeBox/secureCodeBox/discussions
Actions https://github.com/secureCodeBox/secureCodeBox/actions
Projects https://github.com/secureCodeBox/secureCodeBox/projects
Security https://github.com/secureCodeBox/secureCodeBox/security
Insights https://github.com/secureCodeBox/secureCodeBox/pulse
Sign up for GitHub https://github.com/signup?return_to=%2FsecureCodeBox%2FsecureCodeBox%2Fissues%2Fnew%2Fchoose
terms of servicehttps://docs.github.com/terms
privacy statementhttps://docs.github.com/privacy
Sign inhttps://github.com/login?return_to=%2FsecureCodeBox%2FsecureCodeBox%2Fissues%2Fnew%2Fchoose
Ilyesbdlalahttps://github.com/Ilyesbdlala
mainhttps://github.com/secureCodeBox/secureCodeBox/tree/main
snyk-fix-fb803a8d425fd30be6be6847eb9d8061https://github.com/secureCodeBox/secureCodeBox/tree/snyk-fix-fb803a8d425fd30be6be6847eb9d8061
Conversation 1 https://github.com/secureCodeBox/secureCodeBox/pull/1682
Commits 1 https://github.com/secureCodeBox/secureCodeBox/pull/1682/commits
Checks 0 https://github.com/secureCodeBox/secureCodeBox/pull/1682/checks
Files changed https://github.com/secureCodeBox/secureCodeBox/pull/1682/files
Please reload this pagehttps://github.com/secureCodeBox/secureCodeBox/pull/1682/files
[Snyk] Security upgrade xml2js from 0.4.23 to 0.5.0 https://github.com/secureCodeBox/secureCodeBox/pull/1682/files#top
Show all changes 1 commit https://github.com/secureCodeBox/secureCodeBox/pull/1682/files
a9e3a4a fix: scanners/ncrack/parser/package.json & scanners/ncrack/parser/pac… snyk-bot Apr 10, 2023 https://github.com/secureCodeBox/secureCodeBox/pull/1682/commits/a9e3a4a7ca2cb917c7fc616eef1376f7a8eccf13
Clear filters https://github.com/secureCodeBox/secureCodeBox/pull/1682/files
Please reload this pagehttps://github.com/secureCodeBox/secureCodeBox/pull/1682/files
Please reload this pagehttps://github.com/secureCodeBox/secureCodeBox/pull/1682/files
package-lock.json https://github.com/secureCodeBox/secureCodeBox/pull/1682/files#diff-5bf3b2dd464acd3495866a62e03067c35f0ce7ea9590775bde7fe1dfc7bb8e5a
package.json https://github.com/secureCodeBox/secureCodeBox/pull/1682/files#diff-ab6d865e2df0efc9f06121c030586ca9dc4b9c167b53930bd7f4c733651ab2cb
scanners/ncrack/parser/package-lock.jsonhttps://github.com/secureCodeBox/secureCodeBox/pull/1682/files#diff-5bf3b2dd464acd3495866a62e03067c35f0ce7ea9590775bde7fe1dfc7bb8e5a
View file https://github.com/secureCodeBox/secureCodeBox/blob/a9e3a4a7ca2cb917c7fc616eef1376f7a8eccf13/scanners/ncrack/parser/package-lock.json
Open in desktop https://desktop.github.com
how customized files appear on GitHubhttps://docs.github.com/github/administering-a-repository/customizing-how-changed-files-appear-on-github
Please reload this pagehttps://github.com/secureCodeBox/secureCodeBox/pull/1682/files
scanners/ncrack/parser/package.jsonhttps://github.com/secureCodeBox/secureCodeBox/pull/1682/files#diff-ab6d865e2df0efc9f06121c030586ca9dc4b9c167b53930bd7f4c733651ab2cb
View file https://github.com/secureCodeBox/secureCodeBox/blob/a9e3a4a7ca2cb917c7fc616eef1376f7a8eccf13/scanners/ncrack/parser/package.json
Open in desktop https://desktop.github.com
https://github.co/hiddenchars
https://github.com/secureCodeBox/secureCodeBox/pull/1682/{{ revealButtonHref }}
https://github.com/secureCodeBox/secureCodeBox/pull/1682/files#diff-ab6d865e2df0efc9f06121c030586ca9dc4b9c167b53930bd7f4c733651ab2cb
https://github.com
Termshttps://docs.github.com/site-policy/github-terms/github-terms-of-service
Privacyhttps://docs.github.com/site-policy/privacy-policies/github-privacy-statement
Securityhttps://github.com/security
Statushttps://www.githubstatus.com/
Communityhttps://github.community/
Docshttps://docs.github.com/
Contacthttps://support.github.com?tags=dotcom-footer

Viewport: width=device-width


URLs of crawlers that visited me.