Skip to content

Update @aws-sdk/client-s3 to resolve critical-severity vulnerabilities#255

Merged
kriszyp merged 1 commit intomainfrom
update-client-s3
Mar 18, 2026
Merged

Update @aws-sdk/client-s3 to resolve critical-severity vulnerabilities#255
kriszyp merged 1 commit intomainfrom
update-client-s3

Conversation

@cb1kenobi
Copy link
Copy Markdown
Contributor

@aws-sdk/client-s3 has several dependencies which have vulnerabilities, however the most important one is the fast-xml-parser dependency which has a critical vulnerability:

@cb1kenobi cb1kenobi requested a review from a team as a code owner March 18, 2026 19:31
@socket-security
Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updated@​aws-sdk/​client-s3@​3.964.0 ⏵ 3.1012.098 +1100100 +198 +1100

View full report

@kriszyp kriszyp merged commit 05ad24e into main Mar 18, 2026
20 of 22 checks passed
@kriszyp kriszyp deleted the update-client-s3 branch March 18, 2026 21:02
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants