Skip to content

chore(deps): bump fast-xml-parser to ^5.7.0#6043

Merged
antonis merged 1 commit intomainfrom
antonis/bump-fast-xml-parser
Apr 24, 2026
Merged

chore(deps): bump fast-xml-parser to ^5.7.0#6043
antonis merged 1 commit intomainfrom
antonis/bump-fast-xml-parser

Conversation

@antonis
Copy link
Copy Markdown
Contributor

@antonis antonis commented Apr 24, 2026

Bumps the existing fast-xml-parser resolution from ^5.5.7 to ^5.7.0, fixing XML Comment and CDATA injection via unescaped delimiters.

Dev-only dependency.

https://github.com/getsentry/sentry-react-native/security/dependabot/510

Fixes Dependabot alert for XML Comment and CDATA injection via
unescaped delimiters in XMLBuilder.

Dev-only dependency.

https://github.com/getsentry/sentry-react-native/security/dependabot/510

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
@github-actions
Copy link
Copy Markdown
Contributor

Fails
🚫 Pull request is not ready for merge, please add the "ready-to-merge" label to the pull request

Generated by 🚫 dangerJS against 9c3e290

@antonis antonis marked this pull request as ready for review April 24, 2026 10:48
Copy link
Copy Markdown
Collaborator

@lucas-zimerman lucas-zimerman left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM!

@antonis antonis merged commit c0a7ee7 into main Apr 24, 2026
56 of 61 checks passed
@antonis antonis deleted the antonis/bump-fast-xml-parser branch April 24, 2026 13:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants