Skip to content

Security vulnerability fast-csv #152

Description

@createthis

Looks like https://www.npmjs.com/advisories/1587 was released on December 8th 2020. Versions of fast-csv before 4.3.6 are affected if they use ignoreEmpty, which this code appears to use here: https://github.com/bhushankumarl/amazon-mws/blob/32b0eb0152243b26150ec8419ba1db6019c9d1a2/lib/AmazonMwsResource.js#L157

Metadata

Metadata

Assignees

Labels

No labels
No labels

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions