Bump fast-xml-parser from 5.2.3 to 5.3.5 in /demo #38
codefactor.io / CodeFactor
failed
Feb 11, 2026 in 2s
4 issues found.
Annotations
Check failure on line 0 in demo/pnpm-lock.yaml
codefactor-io / CodeFactor
demo/pnpm-lock.yaml#L0
Use of vulnerable next (GHSA-9qr9-h5gf-34mp) [update to 15.0.5, 15.1.9, 15.2.6, 15.3.6, 15.4.8, 15.5.7, 16.0.7] (trivy-GHSA-9qr9-h5gf-34mp-next)
Check warning on line 0 in demo/pnpm-lock.yaml
codefactor-io / CodeFactor
demo/pnpm-lock.yaml#L0
Use of vulnerable next (GHSA-mwv6-3258-q52c) [update to 14.2.34, 15.0.6, 15.1.10, 15.2.7, 15.3.7, 15.4.9, 15.5.8, 15.6.0-canary.59, 16.0.9, 16.1.0-canary.17] (trivy-GHSA-mwv6-3258-q52c-next)
Check failure on line 0 in demo/pnpm-lock.yaml
codefactor-io / CodeFactor
demo/pnpm-lock.yaml#L0
Use of vulnerable form-data (CVE-2025-7783) [update to 2.5.4, 3.0.4, 4.0.4] (trivy-CVE-2025-7783-form-data)
Check warning on line 0 in demo/pnpm-lock.yaml
codefactor-io / CodeFactor
demo/pnpm-lock.yaml#L0
Use of vulnerable axios (CVE-2025-58754) [update to 1.12.0, 0.30.2] (trivy-CVE-2025-58754-axios)
Loading