Interactive prototype · Mock data only · No repositories, cloud accounts, files, or external services are connected
RANGE
4 findings

Vulnerabilities

CVE-2023-34104

Regex injection via DOCTYPE entities

Published 6 Jun 2023 View advisory ↗
High Not deployed
Executive summary
No production impact identified

fast-xml-parser 4.2.3 was detected in the billing-worker feature branch. The affected component has not been built or deployed to a connected environment, so it does not impact Production.

Last analysed 2 minutes ago
Impact scope

1 affected component · 0 environments

Not deployed
Affected components
billing-worker
SBOM · billing-worker@3.4.1
Current
Matched package
fast-xml-parser@4.2.3
Affected environments
No connected environment

The affected component is inventoried but is not deployed to Production or Staging.

Detected package
fast-xml-parser@4.2.3
Fixed version
fast-xml-parser@4.2.4
Match confidence
Confirmed inventory
Component and environment evidence
01 · Component
billing-worker
billing-worker@3.4.1
SBOM · contains fast-xml-parser@4.2.3
02 · Environment
Not built
None