You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Hello, the current version of @aws-sdk/client-s3 that next-video uses is ^3.540.0. This version has fast-xml-parser @ v4.2.5 as a dependency, which contains a ReDOS security vulnerability, and which was fixed in v 4.4.1.
@aws-sdk/client-s3 mitigated this by updating their version of fast-xml-parser to 4.4.1 in version 3.621.0. Would it be possible for next-video update its @aws-sdk/client-s3 version to 3.621.0 or higher?
The text was updated successfully, but these errors were encountered:
Hello, the current version of
@aws-sdk/client-s3
thatnext-video
uses is^3.540.0
. This version hasfast-xml-parser @ v4.2.5
as a dependency, which contains a ReDOS security vulnerability, and which was fixed in v 4.4.1.@aws-sdk/client-s3
mitigated this by updating their version offast-xml-parser
to 4.4.1 in version 3.621.0. Would it be possible fornext-video
update its@aws-sdk/client-s3
version to3.621.0
or higher?The text was updated successfully, but these errors were encountered: