Skip to content

fix: resolve high-severity npm audit vulnerabilities - #1184

Merged
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities
May 8, 2026
Merged

fix: resolve high-severity npm audit vulnerabilities#1184
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities

Conversation

@Hweinstock

@HweinstockHweinstock commented May 8, 2026

Copy link
Copy Markdown
Contributor

Description

Run npm audit fix and remove stale overrides to resolve all production dependency vulnerabilities:

  • fast-xml-builder (high): attribute value quote bypass (GHSA-5wm8-gmm8-39j9, GHSA-45c6-75p6-83cc)
  • fast-uri (high): path traversal via percent-encoded dot segments (GHSA-q3j6-qgpj-74h6)
  • uuid (moderate): missing buffer bounds check (GHSA-w5hq-g745-h8pq)
  • fast-xml-parser (moderate): XML comment/CDATA injection (GHSA-gh4j-gqv2-49f6) — resolved by removing stale fast-xml-parser and @aws-sdk/xml-builder overrides, allowing natural resolution to fast-xml-parser@5.7.2 via @aws-sdk/xml-builder@3.972.22

The only remaining fast-uri@3.1.0 is bundled inside aws-cdk-lib (dev dependency), excluded by --omit=dev.

npm run security:audit now reports 0 vulnerabilities.

Related Issue

N/A — security maintenance

Type of Change

  • Bug fix
  • New feature
  • Breaking change
  • Documentation update
  • Other (please describe):

Testing

How have you tested the change?

  • I ran npm run test:unit and npm run test:integ
  • I ran npm run typecheck
  • I ran npm run lint
  • If I modified src/assets/, I ran npm run test:update-snapshots and committed the updated snapshots

Checklist

  • I have read the CONTRIBUTING document
  • I have added any necessary tests that prove my fix is effective or my feature works
  • I have updated the documentation accordingly
  • I have added an appropriate example to the documentation to outline the feature, or no new docs are needed
  • My changes generate no new warnings
  • Any dependent changes have been merged and published

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the
terms of your choice.

Run npm audit fix to address:
- fast-xml-builder: attribute value quote bypass (high)
- fast-uri: path traversal via percent-encoded dot segments (high, prod dep)
- uuid: missing buffer bounds check (moderate)
Remaining moderate vulnerabilities are in @aws-sdk transitive deps
(fast-xml-parser < 5.7.0) which require upstream SDK updates.
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the audit fix. The three high-severity bumps (fast-xml-builder, fast-uri, uuid) are legit — I verified each against the linked GHSAs and confirmed the top-level resolutions in the lockfile land on patched versions. All CI checks are green and the change is lockfile-only.

One substantive point worth addressing before merging:

The fast-xml-parser / @aws-sdk/xml-builder overrides in package.json (lines 151–159) are now stale and can be dropped as part of this PR

The overridesComments in package.json explicitly describe when each override should be removed:

  • fast-xml-parser → "Remove once @aws-sdk updates to fast-xml-parser >=5.5.7."
  • @aws-sdk/xml-builder → "Remove once @aws-sdk/client-* deps are bumped past 3.972.14."

Both conditions are now met by this PR's transitive bumps. Specifically, @aws-sdk/core goes from 3.974.63.974.8, which now requires @aws-sdk/xml-builder ^3.972.22. Published @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser: 5.7.2, which in turn fixes the remaining medium advisory (GHSA-gh4j-gqv2-49f6, vulnerable range < 5.7.0).

Concrete consequences of leaving the overrides in place:

  1. Semver mismatch in the lockfile. Line 2148 of the new package-lock.json records @aws-sdk/core@3.974.8 as requiring "@aws-sdk/xml-builder": "^3.972.22", but the override pins the actually-installed tree to 3.972.15 (line 2892). It works because overrides win, but it's a real downgrade away from what @aws-sdk/core expects.
  2. Residual medium CVE.fast-xml-parser@5.5.7 is still vulnerable to GHSA-gh4j-gqv2-49f6. The PR description attributes remaining moderates to upstream not having shipped yet — but the upstream fix has in fact shipped, and the override is the only thing preventing us from picking it up.

Options:

  • (preferred) Remove both fast-xml-parser and @aws-sdk/xml-builder entries from both overrides and overridesComments in package.json, then regenerate the lockfile. This should pull in @aws-sdk/xml-builder@3.972.22 and fast-xml-parser@5.7.2 and fully clear the xml-related advisories (including the medium).
  • Or, if there's a reason to stay on these pinned versions for now, at least bump the @aws-sdk/xml-builder override from 3.972.15 to 3.972.22 so it matches what @aws-sdk/core@3.974.8 requests, and bump fast-xml-parser from 5.5.7 to 5.7.2 to clear the medium advisory. The original justifications for the overrides are all satisfied at those versions.
  • Or, keep as-is and update the PR description to acknowledge the remaining medium comes from a stale in-repo override rather than unshipped upstream work — but this seems strictly worse than either option above.

Also a minor note for the description (non-blocking): the residual fast-uri@3.1.0 shows up as a bundled dep inside aws-cdk-lib (see node_modules/aws-cdk-lib/node_modules/fast-uri in the lockfile), not via @aws-sdk. It's filtered out by --omit=dev so it doesn't break the audit gate, but the description attributes it to the wrong place.

Comment threadpackage-lock.json
@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
Both override conditions are now met by upstream:
- @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser@5.7.2
- @aws-sdk/core@3.974.8 requires @aws-sdk/xml-builder ^3.972.22
Removing the overrides allows the natural resolution to pick up
the patched versions, clearing the remaining moderate advisory
(GHSA-gh4j-gqv2-49f6, fast-xml-parser < 5.7.0).
security:audit now reports 0 vulnerabilities (--omit=dev).
@github-actionsgithub-actionsBot added size/xs PR size: XS and removed size/xs PR size: XS labels May 8, 2026
@HweinstockHweinstock reopened this May 8, 2026
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress and removed size/xs PR size: XS labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for following up on the override cleanup. Commit a46fe2d does exactly what the prior review asked for:

  • Removes fast-xml-parser and @aws-sdk/xml-builder from both overrides and overridesComments in package.json (lines 150–157 now match the remaining override set).
  • Regenerates the lockfile so @aws-sdk/xml-builder@3.972.22 (what @aws-sdk/core@3.974.8 actually requests) and fast-xml-parser@5.7.2 resolve naturally, which also clears the residual medium advisory GHSA-gh4j-gqv2-49f6.

Verification on the new lockfile:

  • Top-level fast-xml-parser@5.7.2, fast-xml-builder@1.2.0, fast-uri@3.1.2, uuid@11.1.1, @aws-sdk/xml-builder@3.972.22, @aws-sdk/core@3.974.8 — all patched against the linked GHSAs.
  • The only remaining fast-uri@3.1.0 copy is nested under node_modules/aws-cdk-lib/node_modules/fast-uri and is marked dev: true in the lockfile, so it's correctly excluded by security:audit (npm audit --audit-level=high --omit=dev).
  • No other overrides are stale — minimatch and glob still have the upstream pinning reasons described in overridesComments.

Core CI on the latest SHA is green (lint, typecheck, security, format, unit-test 1/3, 2/3, 3/3, secrets, schema-check, CodeQL). The still-pending/failing entries in gh pr checks are either cancelled runs from the earlier commit or jobs still in progress.

One non-blocking nit (same as flagged in the previous review): the PR description still says "Remaining moderate vulnerabilities are in @aws-sdk transitive deps (fast-xml-parser < 5.7.0) which require upstream SDK updates" — this is now out of date since this PR does in fact pull in fast-xml-parser@5.7.2. Worth updating the description before merge, but not a code change.

LGTM.

@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
@Hweinstock
Hweinstock marked this pull request as ready for review May 8, 2026 18:04
@Hweinstock
Hweinstock requested a review from a teamMay 8, 2026 18:04
@tejaskash
tejaskash merged commit 715a5a2 into aws:mainMay 8, 2026
33 of 46 checks passed
@Hweinstock
Hweinstock deleted the fix/npm-audit-vulnerabilities branch July 13, 2026 13:04
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size/xsPR size: XS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@Hweinstock@tejaskash@agentcore-cli-automation
, 'i'); if (__m === '*' || __re.test(location.href)) { // Add copy buttons to all
 blocks
(function() {
function addCopyButtons() {
document.querySelectorAll('pre code').forEach(function(codeBlock) {
if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;
codeBlock.parentElement.setAttribute('data-copy-added', 'true');
var btn = document.createElement('button');
btn.textContent = 'Copy';
btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';
btn.onmouseover = function() { this.style.opacity = '1'; };
btn.onmouseout = function() { this.style.opacity = '0.7'; };
btn.onclick = function() {
navigator.clipboard.writeText(codeBlock.textContent).then(function() {
btn.textContent = 'Copied!';
setTimeout(function() { btn.textContent = 'Copy'; }, 1500);
});
};
codeBlock.parentElement.style.position = 'relative';
codeBlock.parentElement.appendChild(btn);
});
}
addCopyButtons();
// Re-run on dynamic content
var observer = new MutationObserver(addCopyButtons);
observer.observe(document.body, { childList: true, subtree: true });
})();
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
fix: resolve high-severity npm audit vulnerabilities by Hweinstock · Pull Request #1184 · aws/agentcore-cli · GitHub
Skip to content

fix: resolve high-severity npm audit vulnerabilities - #1184

Merged
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities
May 8, 2026
Merged

fix: resolve high-severity npm audit vulnerabilities#1184
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities

Conversation

@Hweinstock

@HweinstockHweinstock commented May 8, 2026

Copy link
Copy Markdown
Contributor

Description

Run npm audit fix and remove stale overrides to resolve all production dependency vulnerabilities:

  • fast-xml-builder (high): attribute value quote bypass (GHSA-5wm8-gmm8-39j9, GHSA-45c6-75p6-83cc)
  • fast-uri (high): path traversal via percent-encoded dot segments (GHSA-q3j6-qgpj-74h6)
  • uuid (moderate): missing buffer bounds check (GHSA-w5hq-g745-h8pq)
  • fast-xml-parser (moderate): XML comment/CDATA injection (GHSA-gh4j-gqv2-49f6) — resolved by removing stale fast-xml-parser and @aws-sdk/xml-builder overrides, allowing natural resolution to fast-xml-parser@5.7.2 via @aws-sdk/xml-builder@3.972.22

The only remaining fast-uri@3.1.0 is bundled inside aws-cdk-lib (dev dependency), excluded by --omit=dev.

npm run security:audit now reports 0 vulnerabilities.

Related Issue

N/A — security maintenance

Type of Change

  • Bug fix
  • New feature
  • Breaking change
  • Documentation update
  • Other (please describe):

Testing

How have you tested the change?

  • I ran npm run test:unit and npm run test:integ
  • I ran npm run typecheck
  • I ran npm run lint
  • If I modified src/assets/, I ran npm run test:update-snapshots and committed the updated snapshots

Checklist

  • I have read the CONTRIBUTING document
  • I have added any necessary tests that prove my fix is effective or my feature works
  • I have updated the documentation accordingly
  • I have added an appropriate example to the documentation to outline the feature, or no new docs are needed
  • My changes generate no new warnings
  • Any dependent changes have been merged and published

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the
terms of your choice.

Run npm audit fix to address:
- fast-xml-builder: attribute value quote bypass (high)
- fast-uri: path traversal via percent-encoded dot segments (high, prod dep)
- uuid: missing buffer bounds check (moderate)
Remaining moderate vulnerabilities are in @aws-sdk transitive deps
(fast-xml-parser < 5.7.0) which require upstream SDK updates.
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the audit fix. The three high-severity bumps (fast-xml-builder, fast-uri, uuid) are legit — I verified each against the linked GHSAs and confirmed the top-level resolutions in the lockfile land on patched versions. All CI checks are green and the change is lockfile-only.

One substantive point worth addressing before merging:

The fast-xml-parser / @aws-sdk/xml-builder overrides in package.json (lines 151–159) are now stale and can be dropped as part of this PR

The overridesComments in package.json explicitly describe when each override should be removed:

  • fast-xml-parser → "Remove once @aws-sdk updates to fast-xml-parser >=5.5.7."
  • @aws-sdk/xml-builder → "Remove once @aws-sdk/client-* deps are bumped past 3.972.14."

Both conditions are now met by this PR's transitive bumps. Specifically, @aws-sdk/core goes from 3.974.63.974.8, which now requires @aws-sdk/xml-builder ^3.972.22. Published @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser: 5.7.2, which in turn fixes the remaining medium advisory (GHSA-gh4j-gqv2-49f6, vulnerable range < 5.7.0).

Concrete consequences of leaving the overrides in place:

  1. Semver mismatch in the lockfile. Line 2148 of the new package-lock.json records @aws-sdk/core@3.974.8 as requiring "@aws-sdk/xml-builder": "^3.972.22", but the override pins the actually-installed tree to 3.972.15 (line 2892). It works because overrides win, but it's a real downgrade away from what @aws-sdk/core expects.
  2. Residual medium CVE.fast-xml-parser@5.5.7 is still vulnerable to GHSA-gh4j-gqv2-49f6. The PR description attributes remaining moderates to upstream not having shipped yet — but the upstream fix has in fact shipped, and the override is the only thing preventing us from picking it up.

Options:

  • (preferred) Remove both fast-xml-parser and @aws-sdk/xml-builder entries from both overrides and overridesComments in package.json, then regenerate the lockfile. This should pull in @aws-sdk/xml-builder@3.972.22 and fast-xml-parser@5.7.2 and fully clear the xml-related advisories (including the medium).
  • Or, if there's a reason to stay on these pinned versions for now, at least bump the @aws-sdk/xml-builder override from 3.972.15 to 3.972.22 so it matches what @aws-sdk/core@3.974.8 requests, and bump fast-xml-parser from 5.5.7 to 5.7.2 to clear the medium advisory. The original justifications for the overrides are all satisfied at those versions.
  • Or, keep as-is and update the PR description to acknowledge the remaining medium comes from a stale in-repo override rather than unshipped upstream work — but this seems strictly worse than either option above.

Also a minor note for the description (non-blocking): the residual fast-uri@3.1.0 shows up as a bundled dep inside aws-cdk-lib (see node_modules/aws-cdk-lib/node_modules/fast-uri in the lockfile), not via @aws-sdk. It's filtered out by --omit=dev so it doesn't break the audit gate, but the description attributes it to the wrong place.

Comment threadpackage-lock.json
@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
Both override conditions are now met by upstream:
- @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser@5.7.2
- @aws-sdk/core@3.974.8 requires @aws-sdk/xml-builder ^3.972.22
Removing the overrides allows the natural resolution to pick up
the patched versions, clearing the remaining moderate advisory
(GHSA-gh4j-gqv2-49f6, fast-xml-parser < 5.7.0).
security:audit now reports 0 vulnerabilities (--omit=dev).
@github-actionsgithub-actionsBot added size/xs PR size: XS and removed size/xs PR size: XS labels May 8, 2026
@HweinstockHweinstock reopened this May 8, 2026
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress and removed size/xs PR size: XS labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for following up on the override cleanup. Commit a46fe2d does exactly what the prior review asked for:

  • Removes fast-xml-parser and @aws-sdk/xml-builder from both overrides and overridesComments in package.json (lines 150–157 now match the remaining override set).
  • Regenerates the lockfile so @aws-sdk/xml-builder@3.972.22 (what @aws-sdk/core@3.974.8 actually requests) and fast-xml-parser@5.7.2 resolve naturally, which also clears the residual medium advisory GHSA-gh4j-gqv2-49f6.

Verification on the new lockfile:

  • Top-level fast-xml-parser@5.7.2, fast-xml-builder@1.2.0, fast-uri@3.1.2, uuid@11.1.1, @aws-sdk/xml-builder@3.972.22, @aws-sdk/core@3.974.8 — all patched against the linked GHSAs.
  • The only remaining fast-uri@3.1.0 copy is nested under node_modules/aws-cdk-lib/node_modules/fast-uri and is marked dev: true in the lockfile, so it's correctly excluded by security:audit (npm audit --audit-level=high --omit=dev).
  • No other overrides are stale — minimatch and glob still have the upstream pinning reasons described in overridesComments.

Core CI on the latest SHA is green (lint, typecheck, security, format, unit-test 1/3, 2/3, 3/3, secrets, schema-check, CodeQL). The still-pending/failing entries in gh pr checks are either cancelled runs from the earlier commit or jobs still in progress.

One non-blocking nit (same as flagged in the previous review): the PR description still says "Remaining moderate vulnerabilities are in @aws-sdk transitive deps (fast-xml-parser < 5.7.0) which require upstream SDK updates" — this is now out of date since this PR does in fact pull in fast-xml-parser@5.7.2. Worth updating the description before merge, but not a code change.

LGTM.

@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
@Hweinstock
Hweinstock marked this pull request as ready for review May 8, 2026 18:04
@Hweinstock
Hweinstock requested a review from a teamMay 8, 2026 18:04
@tejaskash
tejaskash merged commit 715a5a2 into aws:mainMay 8, 2026
33 of 46 checks passed
@Hweinstock
Hweinstock deleted the fix/npm-audit-vulnerabilities branch July 13, 2026 13:04
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size/xsPR size: XS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@Hweinstock@tejaskash@agentcore-cli-automation
, 'i'); if (__m === '*' || __re.test(location.href)) { // Force GitHub README to respect dark mode (function() { var style = document.createElement('style'); style.textContent = ' .markdown-body { color-scheme: dark light; } .markdown-body pre { background: #161b22 !important; } .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; } .markdown-body table th, .markdown-body table td { border-color: #30363d !important; } .markdown-body img { background: #0d1117; } .markdown-body blockquote { border-left-color: #8b949e; } .markdown-body hr { border-color: #30363d; } '; document.head.appendChild(style); })(); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' fix: resolve high-severity npm audit vulnerabilities by Hweinstock · Pull Request #1184 · aws/agentcore-cli · GitHub
Skip to content

fix: resolve high-severity npm audit vulnerabilities - #1184

Merged
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities
May 8, 2026
Merged

fix: resolve high-severity npm audit vulnerabilities#1184
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities

Conversation

@Hweinstock

@HweinstockHweinstock commented May 8, 2026

Copy link
Copy Markdown
Contributor

Description

Run npm audit fix and remove stale overrides to resolve all production dependency vulnerabilities:

  • fast-xml-builder (high): attribute value quote bypass (GHSA-5wm8-gmm8-39j9, GHSA-45c6-75p6-83cc)
  • fast-uri (high): path traversal via percent-encoded dot segments (GHSA-q3j6-qgpj-74h6)
  • uuid (moderate): missing buffer bounds check (GHSA-w5hq-g745-h8pq)
  • fast-xml-parser (moderate): XML comment/CDATA injection (GHSA-gh4j-gqv2-49f6) — resolved by removing stale fast-xml-parser and @aws-sdk/xml-builder overrides, allowing natural resolution to fast-xml-parser@5.7.2 via @aws-sdk/xml-builder@3.972.22

The only remaining fast-uri@3.1.0 is bundled inside aws-cdk-lib (dev dependency), excluded by --omit=dev.

npm run security:audit now reports 0 vulnerabilities.

Related Issue

N/A — security maintenance

Type of Change

  • Bug fix
  • New feature
  • Breaking change
  • Documentation update
  • Other (please describe):

Testing

How have you tested the change?

  • I ran npm run test:unit and npm run test:integ
  • I ran npm run typecheck
  • I ran npm run lint
  • If I modified src/assets/, I ran npm run test:update-snapshots and committed the updated snapshots

Checklist

  • I have read the CONTRIBUTING document
  • I have added any necessary tests that prove my fix is effective or my feature works
  • I have updated the documentation accordingly
  • I have added an appropriate example to the documentation to outline the feature, or no new docs are needed
  • My changes generate no new warnings
  • Any dependent changes have been merged and published

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the
terms of your choice.

Run npm audit fix to address:
- fast-xml-builder: attribute value quote bypass (high)
- fast-uri: path traversal via percent-encoded dot segments (high, prod dep)
- uuid: missing buffer bounds check (moderate)
Remaining moderate vulnerabilities are in @aws-sdk transitive deps
(fast-xml-parser < 5.7.0) which require upstream SDK updates.
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the audit fix. The three high-severity bumps (fast-xml-builder, fast-uri, uuid) are legit — I verified each against the linked GHSAs and confirmed the top-level resolutions in the lockfile land on patched versions. All CI checks are green and the change is lockfile-only.

One substantive point worth addressing before merging:

The fast-xml-parser / @aws-sdk/xml-builder overrides in package.json (lines 151–159) are now stale and can be dropped as part of this PR

The overridesComments in package.json explicitly describe when each override should be removed:

  • fast-xml-parser → "Remove once @aws-sdk updates to fast-xml-parser >=5.5.7."
  • @aws-sdk/xml-builder → "Remove once @aws-sdk/client-* deps are bumped past 3.972.14."

Both conditions are now met by this PR's transitive bumps. Specifically, @aws-sdk/core goes from 3.974.63.974.8, which now requires @aws-sdk/xml-builder ^3.972.22. Published @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser: 5.7.2, which in turn fixes the remaining medium advisory (GHSA-gh4j-gqv2-49f6, vulnerable range < 5.7.0).

Concrete consequences of leaving the overrides in place:

  1. Semver mismatch in the lockfile. Line 2148 of the new package-lock.json records @aws-sdk/core@3.974.8 as requiring "@aws-sdk/xml-builder": "^3.972.22", but the override pins the actually-installed tree to 3.972.15 (line 2892). It works because overrides win, but it's a real downgrade away from what @aws-sdk/core expects.
  2. Residual medium CVE.fast-xml-parser@5.5.7 is still vulnerable to GHSA-gh4j-gqv2-49f6. The PR description attributes remaining moderates to upstream not having shipped yet — but the upstream fix has in fact shipped, and the override is the only thing preventing us from picking it up.

Options:

  • (preferred) Remove both fast-xml-parser and @aws-sdk/xml-builder entries from both overrides and overridesComments in package.json, then regenerate the lockfile. This should pull in @aws-sdk/xml-builder@3.972.22 and fast-xml-parser@5.7.2 and fully clear the xml-related advisories (including the medium).
  • Or, if there's a reason to stay on these pinned versions for now, at least bump the @aws-sdk/xml-builder override from 3.972.15 to 3.972.22 so it matches what @aws-sdk/core@3.974.8 requests, and bump fast-xml-parser from 5.5.7 to 5.7.2 to clear the medium advisory. The original justifications for the overrides are all satisfied at those versions.
  • Or, keep as-is and update the PR description to acknowledge the remaining medium comes from a stale in-repo override rather than unshipped upstream work — but this seems strictly worse than either option above.

Also a minor note for the description (non-blocking): the residual fast-uri@3.1.0 shows up as a bundled dep inside aws-cdk-lib (see node_modules/aws-cdk-lib/node_modules/fast-uri in the lockfile), not via @aws-sdk. It's filtered out by --omit=dev so it doesn't break the audit gate, but the description attributes it to the wrong place.

Comment threadpackage-lock.json
@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
Both override conditions are now met by upstream:
- @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser@5.7.2
- @aws-sdk/core@3.974.8 requires @aws-sdk/xml-builder ^3.972.22
Removing the overrides allows the natural resolution to pick up
the patched versions, clearing the remaining moderate advisory
(GHSA-gh4j-gqv2-49f6, fast-xml-parser < 5.7.0).
security:audit now reports 0 vulnerabilities (--omit=dev).
@github-actionsgithub-actionsBot added size/xs PR size: XS and removed size/xs PR size: XS labels May 8, 2026
@HweinstockHweinstock reopened this May 8, 2026
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress and removed size/xs PR size: XS labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for following up on the override cleanup. Commit a46fe2d does exactly what the prior review asked for:

  • Removes fast-xml-parser and @aws-sdk/xml-builder from both overrides and overridesComments in package.json (lines 150–157 now match the remaining override set).
  • Regenerates the lockfile so @aws-sdk/xml-builder@3.972.22 (what @aws-sdk/core@3.974.8 actually requests) and fast-xml-parser@5.7.2 resolve naturally, which also clears the residual medium advisory GHSA-gh4j-gqv2-49f6.

Verification on the new lockfile:

  • Top-level fast-xml-parser@5.7.2, fast-xml-builder@1.2.0, fast-uri@3.1.2, uuid@11.1.1, @aws-sdk/xml-builder@3.972.22, @aws-sdk/core@3.974.8 — all patched against the linked GHSAs.
  • The only remaining fast-uri@3.1.0 copy is nested under node_modules/aws-cdk-lib/node_modules/fast-uri and is marked dev: true in the lockfile, so it's correctly excluded by security:audit (npm audit --audit-level=high --omit=dev).
  • No other overrides are stale — minimatch and glob still have the upstream pinning reasons described in overridesComments.

Core CI on the latest SHA is green (lint, typecheck, security, format, unit-test 1/3, 2/3, 3/3, secrets, schema-check, CodeQL). The still-pending/failing entries in gh pr checks are either cancelled runs from the earlier commit or jobs still in progress.

One non-blocking nit (same as flagged in the previous review): the PR description still says "Remaining moderate vulnerabilities are in @aws-sdk transitive deps (fast-xml-parser < 5.7.0) which require upstream SDK updates" — this is now out of date since this PR does in fact pull in fast-xml-parser@5.7.2. Worth updating the description before merge, but not a code change.

LGTM.

@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
@Hweinstock
Hweinstock marked this pull request as ready for review May 8, 2026 18:04
@Hweinstock
Hweinstock requested a review from a teamMay 8, 2026 18:04
@tejaskash
tejaskash merged commit 715a5a2 into aws:mainMay 8, 2026
33 of 46 checks passed
@Hweinstock
Hweinstock deleted the fix/npm-audit-vulnerabilities branch July 13, 2026 13:04
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size/xsPR size: XS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@Hweinstock@tejaskash@agentcore-cli-automation
, 'i'); if (__m === '*' || __re.test(location.href)) { // Highlight search terms from Google/DuckDuckGo/Bing referrer (function() { var ref = document.referrer; var terms = []; if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) { var url = new URL(ref); var q = url.searchParams.get('q') || url.searchParams.get('p'); if (q) { terms = q.split(/\s+/).filter(function(t) { return t.length > 2; }); } } if (terms.length === 0) return; var style = document.createElement('style'); style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }'; document.head.appendChild(style); function highlight(node) { if (node.nodeType === 3) { // text node var text = node.textContent; var found = false; terms.forEach(function(term) { var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\]\\]/g, '\\') + ')', 'gi'); if (regex.test(text)) { found = true; var frag = document.createDocumentFragment(); var parts = text.split(regex); parts.forEach(function(part, i) { if (i % 2 === 0) { frag.appendChild(document.createTextNode(part)); } else { var span = document.createElement('span'); span.className = 'userscript-highlight'; span.textContent = part; frag.appendChild(span); } }); node.parentNode.replaceChild(frag, node); } }); } else if (node.nodeType === 1 && node.childNodes) { // element var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT']; if (!skipTags.includes(node.tagName)) { Array.from(node.childNodes).forEach(highlight); } } } highlight(document.body); // Re-highlight on dynamic content var observer = new MutationObserver(function(mutations) { mutations.forEach(function(m) { m.addedNodes.forEach(function(node) { if (node.nodeType === 1 || node.nodeType === 3) highlight(node); }); }); }); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' fix: resolve high-severity npm audit vulnerabilities by Hweinstock · Pull Request #1184 · aws/agentcore-cli · GitHub
Skip to content

fix: resolve high-severity npm audit vulnerabilities - #1184

Merged
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities
May 8, 2026
Merged

fix: resolve high-severity npm audit vulnerabilities#1184
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities

Conversation

@Hweinstock

@HweinstockHweinstock commented May 8, 2026

Copy link
Copy Markdown
Contributor

Description

Run npm audit fix and remove stale overrides to resolve all production dependency vulnerabilities:

  • fast-xml-builder (high): attribute value quote bypass (GHSA-5wm8-gmm8-39j9, GHSA-45c6-75p6-83cc)
  • fast-uri (high): path traversal via percent-encoded dot segments (GHSA-q3j6-qgpj-74h6)
  • uuid (moderate): missing buffer bounds check (GHSA-w5hq-g745-h8pq)
  • fast-xml-parser (moderate): XML comment/CDATA injection (GHSA-gh4j-gqv2-49f6) — resolved by removing stale fast-xml-parser and @aws-sdk/xml-builder overrides, allowing natural resolution to fast-xml-parser@5.7.2 via @aws-sdk/xml-builder@3.972.22

The only remaining fast-uri@3.1.0 is bundled inside aws-cdk-lib (dev dependency), excluded by --omit=dev.

npm run security:audit now reports 0 vulnerabilities.

Related Issue

N/A — security maintenance

Type of Change

  • Bug fix
  • New feature
  • Breaking change
  • Documentation update
  • Other (please describe):

Testing

How have you tested the change?

  • I ran npm run test:unit and npm run test:integ
  • I ran npm run typecheck
  • I ran npm run lint
  • If I modified src/assets/, I ran npm run test:update-snapshots and committed the updated snapshots

Checklist

  • I have read the CONTRIBUTING document
  • I have added any necessary tests that prove my fix is effective or my feature works
  • I have updated the documentation accordingly
  • I have added an appropriate example to the documentation to outline the feature, or no new docs are needed
  • My changes generate no new warnings
  • Any dependent changes have been merged and published

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the
terms of your choice.

Run npm audit fix to address:
- fast-xml-builder: attribute value quote bypass (high)
- fast-uri: path traversal via percent-encoded dot segments (high, prod dep)
- uuid: missing buffer bounds check (moderate)
Remaining moderate vulnerabilities are in @aws-sdk transitive deps
(fast-xml-parser < 5.7.0) which require upstream SDK updates.
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the audit fix. The three high-severity bumps (fast-xml-builder, fast-uri, uuid) are legit — I verified each against the linked GHSAs and confirmed the top-level resolutions in the lockfile land on patched versions. All CI checks are green and the change is lockfile-only.

One substantive point worth addressing before merging:

The fast-xml-parser / @aws-sdk/xml-builder overrides in package.json (lines 151–159) are now stale and can be dropped as part of this PR

The overridesComments in package.json explicitly describe when each override should be removed:

  • fast-xml-parser → "Remove once @aws-sdk updates to fast-xml-parser >=5.5.7."
  • @aws-sdk/xml-builder → "Remove once @aws-sdk/client-* deps are bumped past 3.972.14."

Both conditions are now met by this PR's transitive bumps. Specifically, @aws-sdk/core goes from 3.974.63.974.8, which now requires @aws-sdk/xml-builder ^3.972.22. Published @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser: 5.7.2, which in turn fixes the remaining medium advisory (GHSA-gh4j-gqv2-49f6, vulnerable range < 5.7.0).

Concrete consequences of leaving the overrides in place:

  1. Semver mismatch in the lockfile. Line 2148 of the new package-lock.json records @aws-sdk/core@3.974.8 as requiring "@aws-sdk/xml-builder": "^3.972.22", but the override pins the actually-installed tree to 3.972.15 (line 2892). It works because overrides win, but it's a real downgrade away from what @aws-sdk/core expects.
  2. Residual medium CVE.fast-xml-parser@5.5.7 is still vulnerable to GHSA-gh4j-gqv2-49f6. The PR description attributes remaining moderates to upstream not having shipped yet — but the upstream fix has in fact shipped, and the override is the only thing preventing us from picking it up.

Options:

  • (preferred) Remove both fast-xml-parser and @aws-sdk/xml-builder entries from both overrides and overridesComments in package.json, then regenerate the lockfile. This should pull in @aws-sdk/xml-builder@3.972.22 and fast-xml-parser@5.7.2 and fully clear the xml-related advisories (including the medium).
  • Or, if there's a reason to stay on these pinned versions for now, at least bump the @aws-sdk/xml-builder override from 3.972.15 to 3.972.22 so it matches what @aws-sdk/core@3.974.8 requests, and bump fast-xml-parser from 5.5.7 to 5.7.2 to clear the medium advisory. The original justifications for the overrides are all satisfied at those versions.
  • Or, keep as-is and update the PR description to acknowledge the remaining medium comes from a stale in-repo override rather than unshipped upstream work — but this seems strictly worse than either option above.

Also a minor note for the description (non-blocking): the residual fast-uri@3.1.0 shows up as a bundled dep inside aws-cdk-lib (see node_modules/aws-cdk-lib/node_modules/fast-uri in the lockfile), not via @aws-sdk. It's filtered out by --omit=dev so it doesn't break the audit gate, but the description attributes it to the wrong place.

Comment threadpackage-lock.json
@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
Both override conditions are now met by upstream:
- @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser@5.7.2
- @aws-sdk/core@3.974.8 requires @aws-sdk/xml-builder ^3.972.22
Removing the overrides allows the natural resolution to pick up
the patched versions, clearing the remaining moderate advisory
(GHSA-gh4j-gqv2-49f6, fast-xml-parser < 5.7.0).
security:audit now reports 0 vulnerabilities (--omit=dev).
@github-actionsgithub-actionsBot added size/xs PR size: XS and removed size/xs PR size: XS labels May 8, 2026
@HweinstockHweinstock reopened this May 8, 2026
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress and removed size/xs PR size: XS labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for following up on the override cleanup. Commit a46fe2d does exactly what the prior review asked for:

  • Removes fast-xml-parser and @aws-sdk/xml-builder from both overrides and overridesComments in package.json (lines 150–157 now match the remaining override set).
  • Regenerates the lockfile so @aws-sdk/xml-builder@3.972.22 (what @aws-sdk/core@3.974.8 actually requests) and fast-xml-parser@5.7.2 resolve naturally, which also clears the residual medium advisory GHSA-gh4j-gqv2-49f6.

Verification on the new lockfile:

  • Top-level fast-xml-parser@5.7.2, fast-xml-builder@1.2.0, fast-uri@3.1.2, uuid@11.1.1, @aws-sdk/xml-builder@3.972.22, @aws-sdk/core@3.974.8 — all patched against the linked GHSAs.
  • The only remaining fast-uri@3.1.0 copy is nested under node_modules/aws-cdk-lib/node_modules/fast-uri and is marked dev: true in the lockfile, so it's correctly excluded by security:audit (npm audit --audit-level=high --omit=dev).
  • No other overrides are stale — minimatch and glob still have the upstream pinning reasons described in overridesComments.

Core CI on the latest SHA is green (lint, typecheck, security, format, unit-test 1/3, 2/3, 3/3, secrets, schema-check, CodeQL). The still-pending/failing entries in gh pr checks are either cancelled runs from the earlier commit or jobs still in progress.

One non-blocking nit (same as flagged in the previous review): the PR description still says "Remaining moderate vulnerabilities are in @aws-sdk transitive deps (fast-xml-parser < 5.7.0) which require upstream SDK updates" — this is now out of date since this PR does in fact pull in fast-xml-parser@5.7.2. Worth updating the description before merge, but not a code change.

LGTM.

@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
@Hweinstock
Hweinstock marked this pull request as ready for review May 8, 2026 18:04
@Hweinstock
Hweinstock requested a review from a teamMay 8, 2026 18:04
@tejaskash
tejaskash merged commit 715a5a2 into aws:mainMay 8, 2026
33 of 46 checks passed
@Hweinstock
Hweinstock deleted the fix/npm-audit-vulnerabilities branch July 13, 2026 13:04
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size/xsPR size: XS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@Hweinstock@tejaskash@agentcore-cli-automation
, 'i'); if (__m === '*' || __re.test(location.href)) { // Strip utm_, fbclid, gclid, etc. from all links on page (function() { var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content', 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid', 'ref', 'ref_src', 'source', 'medium', 'campaign']; function cleanUrl(url) { try { var u = new URL(url, window.location.origin); var changed = false; trackingParams.forEach(function(p) { if (u.searchParams.has(p)) { u.searchParams.delete(p); changed = true; } }); return changed ? u.toString() : url; } catch (e) { return url; } } function cleanLinks() { document.querySelectorAll('a[href]').forEach(function(a) { var clean = cleanUrl(a.href); if (clean !== a.href) a.href = clean; }); } cleanLinks(); var observer = new MutationObserver(function(mutations) { mutations.forEach(function(m) { m.addedNodes.forEach(function(node) { if (node.nodeType === 1) { if (node.tagName === 'A') cleanLinks(); node.querySelectorAll('a[href]').forEach(function(a) { var clean = cleanUrl(a.href); if (clean !== a.href) a.href = clean; }); } }); }); }); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + ' fix: resolve high-severity npm audit vulnerabilities by Hweinstock · Pull Request #1184 · aws/agentcore-cli · GitHub
Skip to content

fix: resolve high-severity npm audit vulnerabilities - #1184

Merged
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities
May 8, 2026
Merged

fix: resolve high-severity npm audit vulnerabilities#1184
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities

Conversation

@Hweinstock

@HweinstockHweinstock commented May 8, 2026

Copy link
Copy Markdown
Contributor

Description

Run npm audit fix and remove stale overrides to resolve all production dependency vulnerabilities:

  • fast-xml-builder (high): attribute value quote bypass (GHSA-5wm8-gmm8-39j9, GHSA-45c6-75p6-83cc)
  • fast-uri (high): path traversal via percent-encoded dot segments (GHSA-q3j6-qgpj-74h6)
  • uuid (moderate): missing buffer bounds check (GHSA-w5hq-g745-h8pq)
  • fast-xml-parser (moderate): XML comment/CDATA injection (GHSA-gh4j-gqv2-49f6) — resolved by removing stale fast-xml-parser and @aws-sdk/xml-builder overrides, allowing natural resolution to fast-xml-parser@5.7.2 via @aws-sdk/xml-builder@3.972.22

The only remaining fast-uri@3.1.0 is bundled inside aws-cdk-lib (dev dependency), excluded by --omit=dev.

npm run security:audit now reports 0 vulnerabilities.

Related Issue

N/A — security maintenance

Type of Change

  • Bug fix
  • New feature
  • Breaking change
  • Documentation update
  • Other (please describe):

Testing

How have you tested the change?

  • I ran npm run test:unit and npm run test:integ
  • I ran npm run typecheck
  • I ran npm run lint
  • If I modified src/assets/, I ran npm run test:update-snapshots and committed the updated snapshots

Checklist

  • I have read the CONTRIBUTING document
  • I have added any necessary tests that prove my fix is effective or my feature works
  • I have updated the documentation accordingly
  • I have added an appropriate example to the documentation to outline the feature, or no new docs are needed
  • My changes generate no new warnings
  • Any dependent changes have been merged and published

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the
terms of your choice.

Run npm audit fix to address:
- fast-xml-builder: attribute value quote bypass (high)
- fast-uri: path traversal via percent-encoded dot segments (high, prod dep)
- uuid: missing buffer bounds check (moderate)
Remaining moderate vulnerabilities are in @aws-sdk transitive deps
(fast-xml-parser < 5.7.0) which require upstream SDK updates.
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the audit fix. The three high-severity bumps (fast-xml-builder, fast-uri, uuid) are legit — I verified each against the linked GHSAs and confirmed the top-level resolutions in the lockfile land on patched versions. All CI checks are green and the change is lockfile-only.

One substantive point worth addressing before merging:

The fast-xml-parser / @aws-sdk/xml-builder overrides in package.json (lines 151–159) are now stale and can be dropped as part of this PR

The overridesComments in package.json explicitly describe when each override should be removed:

  • fast-xml-parser → "Remove once @aws-sdk updates to fast-xml-parser >=5.5.7."
  • @aws-sdk/xml-builder → "Remove once @aws-sdk/client-* deps are bumped past 3.972.14."

Both conditions are now met by this PR's transitive bumps. Specifically, @aws-sdk/core goes from 3.974.63.974.8, which now requires @aws-sdk/xml-builder ^3.972.22. Published @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser: 5.7.2, which in turn fixes the remaining medium advisory (GHSA-gh4j-gqv2-49f6, vulnerable range < 5.7.0).

Concrete consequences of leaving the overrides in place:

  1. Semver mismatch in the lockfile. Line 2148 of the new package-lock.json records @aws-sdk/core@3.974.8 as requiring "@aws-sdk/xml-builder": "^3.972.22", but the override pins the actually-installed tree to 3.972.15 (line 2892). It works because overrides win, but it's a real downgrade away from what @aws-sdk/core expects.
  2. Residual medium CVE.fast-xml-parser@5.5.7 is still vulnerable to GHSA-gh4j-gqv2-49f6. The PR description attributes remaining moderates to upstream not having shipped yet — but the upstream fix has in fact shipped, and the override is the only thing preventing us from picking it up.

Options:

  • (preferred) Remove both fast-xml-parser and @aws-sdk/xml-builder entries from both overrides and overridesComments in package.json, then regenerate the lockfile. This should pull in @aws-sdk/xml-builder@3.972.22 and fast-xml-parser@5.7.2 and fully clear the xml-related advisories (including the medium).
  • Or, if there's a reason to stay on these pinned versions for now, at least bump the @aws-sdk/xml-builder override from 3.972.15 to 3.972.22 so it matches what @aws-sdk/core@3.974.8 requests, and bump fast-xml-parser from 5.5.7 to 5.7.2 to clear the medium advisory. The original justifications for the overrides are all satisfied at those versions.
  • Or, keep as-is and update the PR description to acknowledge the remaining medium comes from a stale in-repo override rather than unshipped upstream work — but this seems strictly worse than either option above.

Also a minor note for the description (non-blocking): the residual fast-uri@3.1.0 shows up as a bundled dep inside aws-cdk-lib (see node_modules/aws-cdk-lib/node_modules/fast-uri in the lockfile), not via @aws-sdk. It's filtered out by --omit=dev so it doesn't break the audit gate, but the description attributes it to the wrong place.

Comment threadpackage-lock.json
@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
Both override conditions are now met by upstream:
- @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser@5.7.2
- @aws-sdk/core@3.974.8 requires @aws-sdk/xml-builder ^3.972.22
Removing the overrides allows the natural resolution to pick up
the patched versions, clearing the remaining moderate advisory
(GHSA-gh4j-gqv2-49f6, fast-xml-parser < 5.7.0).
security:audit now reports 0 vulnerabilities (--omit=dev).
@github-actionsgithub-actionsBot added size/xs PR size: XS and removed size/xs PR size: XS labels May 8, 2026
@HweinstockHweinstock reopened this May 8, 2026
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress and removed size/xs PR size: XS labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for following up on the override cleanup. Commit a46fe2d does exactly what the prior review asked for:

  • Removes fast-xml-parser and @aws-sdk/xml-builder from both overrides and overridesComments in package.json (lines 150–157 now match the remaining override set).
  • Regenerates the lockfile so @aws-sdk/xml-builder@3.972.22 (what @aws-sdk/core@3.974.8 actually requests) and fast-xml-parser@5.7.2 resolve naturally, which also clears the residual medium advisory GHSA-gh4j-gqv2-49f6.

Verification on the new lockfile:

  • Top-level fast-xml-parser@5.7.2, fast-xml-builder@1.2.0, fast-uri@3.1.2, uuid@11.1.1, @aws-sdk/xml-builder@3.972.22, @aws-sdk/core@3.974.8 — all patched against the linked GHSAs.
  • The only remaining fast-uri@3.1.0 copy is nested under node_modules/aws-cdk-lib/node_modules/fast-uri and is marked dev: true in the lockfile, so it's correctly excluded by security:audit (npm audit --audit-level=high --omit=dev).
  • No other overrides are stale — minimatch and glob still have the upstream pinning reasons described in overridesComments.

Core CI on the latest SHA is green (lint, typecheck, security, format, unit-test 1/3, 2/3, 3/3, secrets, schema-check, CodeQL). The still-pending/failing entries in gh pr checks are either cancelled runs from the earlier commit or jobs still in progress.

One non-blocking nit (same as flagged in the previous review): the PR description still says "Remaining moderate vulnerabilities are in @aws-sdk transitive deps (fast-xml-parser < 5.7.0) which require upstream SDK updates" — this is now out of date since this PR does in fact pull in fast-xml-parser@5.7.2. Worth updating the description before merge, but not a code change.

LGTM.

@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
@Hweinstock
Hweinstock marked this pull request as ready for review May 8, 2026 18:04
@Hweinstock
Hweinstock requested a review from a teamMay 8, 2026 18:04
@tejaskash
tejaskash merged commit 715a5a2 into aws:mainMay 8, 2026
33 of 46 checks passed
@Hweinstock
Hweinstock deleted the fix/npm-audit-vulnerabilities branch July 13, 2026 13:04
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size/xsPR size: XS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@Hweinstock@tejaskash@agentcore-cli-automation
, 'i'); if (__m === '*' || __re.test(location.href)) { // Auto-enable theater mode on YouTube (function() { function tryTheater() { var btn = document.querySelector('button[aria-label="Theater mode"], ytd-player #player button[title="Theater mode"]'); if (btn && !btn.classList.contains('activated')) { btn.click(); } } // Try immediately tryTheater(); // Try after navigation (SPA) var lastUrl = location.href; setInterval(function() { if (location.href !== lastUrl) { lastUrl = location.href; setTimeout(tryTheater, 500); } }, 1000); // Also try on player load var observer = new MutationObserver(tryTheater); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' fix: resolve high-severity npm audit vulnerabilities by Hweinstock · Pull Request #1184 · aws/agentcore-cli · GitHub
Skip to content

fix: resolve high-severity npm audit vulnerabilities - #1184

Merged
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities
May 8, 2026
Merged

fix: resolve high-severity npm audit vulnerabilities#1184
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities

Conversation

@Hweinstock

@HweinstockHweinstock commented May 8, 2026

Copy link
Copy Markdown
Contributor

Description

Run npm audit fix and remove stale overrides to resolve all production dependency vulnerabilities:

  • fast-xml-builder (high): attribute value quote bypass (GHSA-5wm8-gmm8-39j9, GHSA-45c6-75p6-83cc)
  • fast-uri (high): path traversal via percent-encoded dot segments (GHSA-q3j6-qgpj-74h6)
  • uuid (moderate): missing buffer bounds check (GHSA-w5hq-g745-h8pq)
  • fast-xml-parser (moderate): XML comment/CDATA injection (GHSA-gh4j-gqv2-49f6) — resolved by removing stale fast-xml-parser and @aws-sdk/xml-builder overrides, allowing natural resolution to fast-xml-parser@5.7.2 via @aws-sdk/xml-builder@3.972.22

The only remaining fast-uri@3.1.0 is bundled inside aws-cdk-lib (dev dependency), excluded by --omit=dev.

npm run security:audit now reports 0 vulnerabilities.

Related Issue

N/A — security maintenance

Type of Change

  • Bug fix
  • New feature
  • Breaking change
  • Documentation update
  • Other (please describe):

Testing

How have you tested the change?

  • I ran npm run test:unit and npm run test:integ
  • I ran npm run typecheck
  • I ran npm run lint
  • If I modified src/assets/, I ran npm run test:update-snapshots and committed the updated snapshots

Checklist

  • I have read the CONTRIBUTING document
  • I have added any necessary tests that prove my fix is effective or my feature works
  • I have updated the documentation accordingly
  • I have added an appropriate example to the documentation to outline the feature, or no new docs are needed
  • My changes generate no new warnings
  • Any dependent changes have been merged and published

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the
terms of your choice.

Run npm audit fix to address:
- fast-xml-builder: attribute value quote bypass (high)
- fast-uri: path traversal via percent-encoded dot segments (high, prod dep)
- uuid: missing buffer bounds check (moderate)
Remaining moderate vulnerabilities are in @aws-sdk transitive deps
(fast-xml-parser < 5.7.0) which require upstream SDK updates.
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the audit fix. The three high-severity bumps (fast-xml-builder, fast-uri, uuid) are legit — I verified each against the linked GHSAs and confirmed the top-level resolutions in the lockfile land on patched versions. All CI checks are green and the change is lockfile-only.

One substantive point worth addressing before merging:

The fast-xml-parser / @aws-sdk/xml-builder overrides in package.json (lines 151–159) are now stale and can be dropped as part of this PR

The overridesComments in package.json explicitly describe when each override should be removed:

  • fast-xml-parser → "Remove once @aws-sdk updates to fast-xml-parser >=5.5.7."
  • @aws-sdk/xml-builder → "Remove once @aws-sdk/client-* deps are bumped past 3.972.14."

Both conditions are now met by this PR's transitive bumps. Specifically, @aws-sdk/core goes from 3.974.63.974.8, which now requires @aws-sdk/xml-builder ^3.972.22. Published @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser: 5.7.2, which in turn fixes the remaining medium advisory (GHSA-gh4j-gqv2-49f6, vulnerable range < 5.7.0).

Concrete consequences of leaving the overrides in place:

  1. Semver mismatch in the lockfile. Line 2148 of the new package-lock.json records @aws-sdk/core@3.974.8 as requiring "@aws-sdk/xml-builder": "^3.972.22", but the override pins the actually-installed tree to 3.972.15 (line 2892). It works because overrides win, but it's a real downgrade away from what @aws-sdk/core expects.
  2. Residual medium CVE.fast-xml-parser@5.5.7 is still vulnerable to GHSA-gh4j-gqv2-49f6. The PR description attributes remaining moderates to upstream not having shipped yet — but the upstream fix has in fact shipped, and the override is the only thing preventing us from picking it up.

Options:

  • (preferred) Remove both fast-xml-parser and @aws-sdk/xml-builder entries from both overrides and overridesComments in package.json, then regenerate the lockfile. This should pull in @aws-sdk/xml-builder@3.972.22 and fast-xml-parser@5.7.2 and fully clear the xml-related advisories (including the medium).
  • Or, if there's a reason to stay on these pinned versions for now, at least bump the @aws-sdk/xml-builder override from 3.972.15 to 3.972.22 so it matches what @aws-sdk/core@3.974.8 requests, and bump fast-xml-parser from 5.5.7 to 5.7.2 to clear the medium advisory. The original justifications for the overrides are all satisfied at those versions.
  • Or, keep as-is and update the PR description to acknowledge the remaining medium comes from a stale in-repo override rather than unshipped upstream work — but this seems strictly worse than either option above.

Also a minor note for the description (non-blocking): the residual fast-uri@3.1.0 shows up as a bundled dep inside aws-cdk-lib (see node_modules/aws-cdk-lib/node_modules/fast-uri in the lockfile), not via @aws-sdk. It's filtered out by --omit=dev so it doesn't break the audit gate, but the description attributes it to the wrong place.

Comment threadpackage-lock.json
@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
Both override conditions are now met by upstream:
- @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser@5.7.2
- @aws-sdk/core@3.974.8 requires @aws-sdk/xml-builder ^3.972.22
Removing the overrides allows the natural resolution to pick up
the patched versions, clearing the remaining moderate advisory
(GHSA-gh4j-gqv2-49f6, fast-xml-parser < 5.7.0).
security:audit now reports 0 vulnerabilities (--omit=dev).
@github-actionsgithub-actionsBot added size/xs PR size: XS and removed size/xs PR size: XS labels May 8, 2026
@HweinstockHweinstock reopened this May 8, 2026
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress and removed size/xs PR size: XS labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for following up on the override cleanup. Commit a46fe2d does exactly what the prior review asked for:

  • Removes fast-xml-parser and @aws-sdk/xml-builder from both overrides and overridesComments in package.json (lines 150–157 now match the remaining override set).
  • Regenerates the lockfile so @aws-sdk/xml-builder@3.972.22 (what @aws-sdk/core@3.974.8 actually requests) and fast-xml-parser@5.7.2 resolve naturally, which also clears the residual medium advisory GHSA-gh4j-gqv2-49f6.

Verification on the new lockfile:

  • Top-level fast-xml-parser@5.7.2, fast-xml-builder@1.2.0, fast-uri@3.1.2, uuid@11.1.1, @aws-sdk/xml-builder@3.972.22, @aws-sdk/core@3.974.8 — all patched against the linked GHSAs.
  • The only remaining fast-uri@3.1.0 copy is nested under node_modules/aws-cdk-lib/node_modules/fast-uri and is marked dev: true in the lockfile, so it's correctly excluded by security:audit (npm audit --audit-level=high --omit=dev).
  • No other overrides are stale — minimatch and glob still have the upstream pinning reasons described in overridesComments.

Core CI on the latest SHA is green (lint, typecheck, security, format, unit-test 1/3, 2/3, 3/3, secrets, schema-check, CodeQL). The still-pending/failing entries in gh pr checks are either cancelled runs from the earlier commit or jobs still in progress.

One non-blocking nit (same as flagged in the previous review): the PR description still says "Remaining moderate vulnerabilities are in @aws-sdk transitive deps (fast-xml-parser < 5.7.0) which require upstream SDK updates" — this is now out of date since this PR does in fact pull in fast-xml-parser@5.7.2. Worth updating the description before merge, but not a code change.

LGTM.

@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
@Hweinstock
Hweinstock marked this pull request as ready for review May 8, 2026 18:04
@Hweinstock
Hweinstock requested a review from a teamMay 8, 2026 18:04
@tejaskash
tejaskash merged commit 715a5a2 into aws:mainMay 8, 2026
33 of 46 checks passed
@Hweinstock
Hweinstock deleted the fix/npm-audit-vulnerabilities branch July 13, 2026 13:04
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size/xsPR size: XS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@Hweinstock@tejaskash@agentcore-cli-automation
, 'i'); if (__m === '*' || __re.test(location.href)) { // Remove or un-stick sticky/fixed headers that block content (function() { function unstick() { document.querySelectorAll('header, nav, [role="banner"], .header, .navbar, .sticky, .fixed-top, [style*="position: fixed"], [style*="position:sticky"]').forEach(function(el) { if (el.style.position === 'fixed' || el.style.position === 'sticky' || getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') { el.style.position = 'static'; el.style.top = 'auto'; el.style.zIndex = 'auto'; } }); } unstick(); var observer = new MutationObserver(unstick); observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] }); })(); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' fix: resolve high-severity npm audit vulnerabilities by Hweinstock · Pull Request #1184 · aws/agentcore-cli · GitHub
Skip to content

fix: resolve high-severity npm audit vulnerabilities - #1184

Merged
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities
May 8, 2026
Merged

fix: resolve high-severity npm audit vulnerabilities#1184
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities

Conversation

@Hweinstock

@HweinstockHweinstock commented May 8, 2026

Copy link
Copy Markdown
Contributor

Description

Run npm audit fix and remove stale overrides to resolve all production dependency vulnerabilities:

  • fast-xml-builder (high): attribute value quote bypass (GHSA-5wm8-gmm8-39j9, GHSA-45c6-75p6-83cc)
  • fast-uri (high): path traversal via percent-encoded dot segments (GHSA-q3j6-qgpj-74h6)
  • uuid (moderate): missing buffer bounds check (GHSA-w5hq-g745-h8pq)
  • fast-xml-parser (moderate): XML comment/CDATA injection (GHSA-gh4j-gqv2-49f6) — resolved by removing stale fast-xml-parser and @aws-sdk/xml-builder overrides, allowing natural resolution to fast-xml-parser@5.7.2 via @aws-sdk/xml-builder@3.972.22

The only remaining fast-uri@3.1.0 is bundled inside aws-cdk-lib (dev dependency), excluded by --omit=dev.

npm run security:audit now reports 0 vulnerabilities.

Related Issue

N/A — security maintenance

Type of Change

  • Bug fix
  • New feature
  • Breaking change
  • Documentation update
  • Other (please describe):

Testing

How have you tested the change?

  • I ran npm run test:unit and npm run test:integ
  • I ran npm run typecheck
  • I ran npm run lint
  • If I modified src/assets/, I ran npm run test:update-snapshots and committed the updated snapshots

Checklist

  • I have read the CONTRIBUTING document
  • I have added any necessary tests that prove my fix is effective or my feature works
  • I have updated the documentation accordingly
  • I have added an appropriate example to the documentation to outline the feature, or no new docs are needed
  • My changes generate no new warnings
  • Any dependent changes have been merged and published

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the
terms of your choice.

Run npm audit fix to address:
- fast-xml-builder: attribute value quote bypass (high)
- fast-uri: path traversal via percent-encoded dot segments (high, prod dep)
- uuid: missing buffer bounds check (moderate)
Remaining moderate vulnerabilities are in @aws-sdk transitive deps
(fast-xml-parser < 5.7.0) which require upstream SDK updates.
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the audit fix. The three high-severity bumps (fast-xml-builder, fast-uri, uuid) are legit — I verified each against the linked GHSAs and confirmed the top-level resolutions in the lockfile land on patched versions. All CI checks are green and the change is lockfile-only.

One substantive point worth addressing before merging:

The fast-xml-parser / @aws-sdk/xml-builder overrides in package.json (lines 151–159) are now stale and can be dropped as part of this PR

The overridesComments in package.json explicitly describe when each override should be removed:

  • fast-xml-parser → "Remove once @aws-sdk updates to fast-xml-parser >=5.5.7."
  • @aws-sdk/xml-builder → "Remove once @aws-sdk/client-* deps are bumped past 3.972.14."

Both conditions are now met by this PR's transitive bumps. Specifically, @aws-sdk/core goes from 3.974.63.974.8, which now requires @aws-sdk/xml-builder ^3.972.22. Published @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser: 5.7.2, which in turn fixes the remaining medium advisory (GHSA-gh4j-gqv2-49f6, vulnerable range < 5.7.0).

Concrete consequences of leaving the overrides in place:

  1. Semver mismatch in the lockfile. Line 2148 of the new package-lock.json records @aws-sdk/core@3.974.8 as requiring "@aws-sdk/xml-builder": "^3.972.22", but the override pins the actually-installed tree to 3.972.15 (line 2892). It works because overrides win, but it's a real downgrade away from what @aws-sdk/core expects.
  2. Residual medium CVE.fast-xml-parser@5.5.7 is still vulnerable to GHSA-gh4j-gqv2-49f6. The PR description attributes remaining moderates to upstream not having shipped yet — but the upstream fix has in fact shipped, and the override is the only thing preventing us from picking it up.

Options:

  • (preferred) Remove both fast-xml-parser and @aws-sdk/xml-builder entries from both overrides and overridesComments in package.json, then regenerate the lockfile. This should pull in @aws-sdk/xml-builder@3.972.22 and fast-xml-parser@5.7.2 and fully clear the xml-related advisories (including the medium).
  • Or, if there's a reason to stay on these pinned versions for now, at least bump the @aws-sdk/xml-builder override from 3.972.15 to 3.972.22 so it matches what @aws-sdk/core@3.974.8 requests, and bump fast-xml-parser from 5.5.7 to 5.7.2 to clear the medium advisory. The original justifications for the overrides are all satisfied at those versions.
  • Or, keep as-is and update the PR description to acknowledge the remaining medium comes from a stale in-repo override rather than unshipped upstream work — but this seems strictly worse than either option above.

Also a minor note for the description (non-blocking): the residual fast-uri@3.1.0 shows up as a bundled dep inside aws-cdk-lib (see node_modules/aws-cdk-lib/node_modules/fast-uri in the lockfile), not via @aws-sdk. It's filtered out by --omit=dev so it doesn't break the audit gate, but the description attributes it to the wrong place.

Comment threadpackage-lock.json
@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
Both override conditions are now met by upstream:
- @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser@5.7.2
- @aws-sdk/core@3.974.8 requires @aws-sdk/xml-builder ^3.972.22
Removing the overrides allows the natural resolution to pick up
the patched versions, clearing the remaining moderate advisory
(GHSA-gh4j-gqv2-49f6, fast-xml-parser < 5.7.0).
security:audit now reports 0 vulnerabilities (--omit=dev).
@github-actionsgithub-actionsBot added size/xs PR size: XS and removed size/xs PR size: XS labels May 8, 2026
@HweinstockHweinstock reopened this May 8, 2026
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress and removed size/xs PR size: XS labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for following up on the override cleanup. Commit a46fe2d does exactly what the prior review asked for:

  • Removes fast-xml-parser and @aws-sdk/xml-builder from both overrides and overridesComments in package.json (lines 150–157 now match the remaining override set).
  • Regenerates the lockfile so @aws-sdk/xml-builder@3.972.22 (what @aws-sdk/core@3.974.8 actually requests) and fast-xml-parser@5.7.2 resolve naturally, which also clears the residual medium advisory GHSA-gh4j-gqv2-49f6.

Verification on the new lockfile:

  • Top-level fast-xml-parser@5.7.2, fast-xml-builder@1.2.0, fast-uri@3.1.2, uuid@11.1.1, @aws-sdk/xml-builder@3.972.22, @aws-sdk/core@3.974.8 — all patched against the linked GHSAs.
  • The only remaining fast-uri@3.1.0 copy is nested under node_modules/aws-cdk-lib/node_modules/fast-uri and is marked dev: true in the lockfile, so it's correctly excluded by security:audit (npm audit --audit-level=high --omit=dev).
  • No other overrides are stale — minimatch and glob still have the upstream pinning reasons described in overridesComments.

Core CI on the latest SHA is green (lint, typecheck, security, format, unit-test 1/3, 2/3, 3/3, secrets, schema-check, CodeQL). The still-pending/failing entries in gh pr checks are either cancelled runs from the earlier commit or jobs still in progress.

One non-blocking nit (same as flagged in the previous review): the PR description still says "Remaining moderate vulnerabilities are in @aws-sdk transitive deps (fast-xml-parser < 5.7.0) which require upstream SDK updates" — this is now out of date since this PR does in fact pull in fast-xml-parser@5.7.2. Worth updating the description before merge, but not a code change.

LGTM.

@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
@Hweinstock
Hweinstock marked this pull request as ready for review May 8, 2026 18:04
@Hweinstock
Hweinstock requested a review from a teamMay 8, 2026 18:04
@tejaskash
tejaskash merged commit 715a5a2 into aws:mainMay 8, 2026
33 of 46 checks passed
@Hweinstock
Hweinstock deleted the fix/npm-audit-vulnerabilities branch July 13, 2026 13:04
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size/xsPR size: XS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@Hweinstock@tejaskash@agentcore-cli-automation
, 'i'); if (__m === '*' || __re.test(location.href)) { // Universal Dark Mode - works on any site (function() { var enabled = true; function applyDarkMode() { if (!enabled) return; // Create style element if it doesn't exist var style = document.getElementById('universal-dark-mode-style'); if (!style) { style = document.createElement('style'); style.id = 'universal-dark-mode-style'; document.head.appendChild(style); } // Dark mode CSS - inverts colors but preserves images/video style.textContent = ' /* Invert everything except media */ html { filter: invert(1) hue-rotate(180deg) !important; background: #1a1a2e !important; } /* Restore images, videos, iframes, canvas */ img, video, iframe, canvas, svg, picture, [style*="background-image"] { filter: invert(1) hue-rotate(180deg) !important; } /* Preserve specific elements that should not be inverted */ .no-dark-mode, .no-dark-mode *, [data-theme="light"], [data-theme="light"], .ace_editor, .ace_editor *, .CodeMirror, .CodeMirror *, .monaco-editor, .monaco-editor *, .markdown-body pre, .markdown-body pre *, .highlight, .highlight *, pre code, pre code * { filter: none !important; } /* Fix common UI elements */ .modal, .popup, .dropdown-menu, .tooltip, .popover { filter: invert(1) hue-rotate(180deg) !important; background: #2d2d44 !important; border-color: #444 !important; } /* Scrollbars */ ::-webkit-scrollbar { background: #1a1a2e !important; } ::-webkit-scrollbar-thumb { background: #444 !important; } ::-webkit-scrollbar-thumb:hover { background: #555 !important; } /* Selection */ ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; } ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; } '; } function removeDarkMode() { var style = document.getElementById('universal-dark-mode-style'); if (style) style.remove(); } // Toggle with Alt+Shift+D document.addEventListener('keydown', function(e) { if (e.altKey && e.shiftKey && e.key === 'D') { e.preventDefault(); enabled = !enabled; if (enabled) { applyDarkMode(); console.log('[Universal Dark Mode] Enabled'); } else { removeDarkMode(); console.log('[Universal Dark Mode] Disabled'); } } }); // Apply on load applyDarkMode(); // Re-apply on dynamic content var observer = new MutationObserver(function(mutations) { if (enabled && !document.getElementById('universal-dark-mode-style')) { applyDarkMode(); } }); observer.observe(document.head, { childList: true }); console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle'); })(); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })(); fix: resolve high-severity npm audit vulnerabilities by Hweinstock · Pull Request #1184 · aws/agentcore-cli · GitHub
Skip to content

fix: resolve high-severity npm audit vulnerabilities - #1184

Merged
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities
May 8, 2026
Merged

fix: resolve high-severity npm audit vulnerabilities#1184
tejaskash merged 2 commits into
aws:mainfrom
Hweinstock:fix/npm-audit-vulnerabilities

Conversation

@Hweinstock

@HweinstockHweinstock commented May 8, 2026

Copy link
Copy Markdown
Contributor

Description

Run npm audit fix and remove stale overrides to resolve all production dependency vulnerabilities:

  • fast-xml-builder (high): attribute value quote bypass (GHSA-5wm8-gmm8-39j9, GHSA-45c6-75p6-83cc)
  • fast-uri (high): path traversal via percent-encoded dot segments (GHSA-q3j6-qgpj-74h6)
  • uuid (moderate): missing buffer bounds check (GHSA-w5hq-g745-h8pq)
  • fast-xml-parser (moderate): XML comment/CDATA injection (GHSA-gh4j-gqv2-49f6) — resolved by removing stale fast-xml-parser and @aws-sdk/xml-builder overrides, allowing natural resolution to fast-xml-parser@5.7.2 via @aws-sdk/xml-builder@3.972.22

The only remaining fast-uri@3.1.0 is bundled inside aws-cdk-lib (dev dependency), excluded by --omit=dev.

npm run security:audit now reports 0 vulnerabilities.

Related Issue

N/A — security maintenance

Type of Change

  • Bug fix
  • New feature
  • Breaking change
  • Documentation update
  • Other (please describe):

Testing

How have you tested the change?

  • I ran npm run test:unit and npm run test:integ
  • I ran npm run typecheck
  • I ran npm run lint
  • If I modified src/assets/, I ran npm run test:update-snapshots and committed the updated snapshots

Checklist

  • I have read the CONTRIBUTING document
  • I have added any necessary tests that prove my fix is effective or my feature works
  • I have updated the documentation accordingly
  • I have added an appropriate example to the documentation to outline the feature, or no new docs are needed
  • My changes generate no new warnings
  • Any dependent changes have been merged and published

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the
terms of your choice.

Run npm audit fix to address:
- fast-xml-builder: attribute value quote bypass (high)
- fast-uri: path traversal via percent-encoded dot segments (high, prod dep)
- uuid: missing buffer bounds check (moderate)
Remaining moderate vulnerabilities are in @aws-sdk transitive deps
(fast-xml-parser < 5.7.0) which require upstream SDK updates.
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the audit fix. The three high-severity bumps (fast-xml-builder, fast-uri, uuid) are legit — I verified each against the linked GHSAs and confirmed the top-level resolutions in the lockfile land on patched versions. All CI checks are green and the change is lockfile-only.

One substantive point worth addressing before merging:

The fast-xml-parser / @aws-sdk/xml-builder overrides in package.json (lines 151–159) are now stale and can be dropped as part of this PR

The overridesComments in package.json explicitly describe when each override should be removed:

  • fast-xml-parser → "Remove once @aws-sdk updates to fast-xml-parser >=5.5.7."
  • @aws-sdk/xml-builder → "Remove once @aws-sdk/client-* deps are bumped past 3.972.14."

Both conditions are now met by this PR's transitive bumps. Specifically, @aws-sdk/core goes from 3.974.63.974.8, which now requires @aws-sdk/xml-builder ^3.972.22. Published @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser: 5.7.2, which in turn fixes the remaining medium advisory (GHSA-gh4j-gqv2-49f6, vulnerable range < 5.7.0).

Concrete consequences of leaving the overrides in place:

  1. Semver mismatch in the lockfile. Line 2148 of the new package-lock.json records @aws-sdk/core@3.974.8 as requiring "@aws-sdk/xml-builder": "^3.972.22", but the override pins the actually-installed tree to 3.972.15 (line 2892). It works because overrides win, but it's a real downgrade away from what @aws-sdk/core expects.
  2. Residual medium CVE.fast-xml-parser@5.5.7 is still vulnerable to GHSA-gh4j-gqv2-49f6. The PR description attributes remaining moderates to upstream not having shipped yet — but the upstream fix has in fact shipped, and the override is the only thing preventing us from picking it up.

Options:

  • (preferred) Remove both fast-xml-parser and @aws-sdk/xml-builder entries from both overrides and overridesComments in package.json, then regenerate the lockfile. This should pull in @aws-sdk/xml-builder@3.972.22 and fast-xml-parser@5.7.2 and fully clear the xml-related advisories (including the medium).
  • Or, if there's a reason to stay on these pinned versions for now, at least bump the @aws-sdk/xml-builder override from 3.972.15 to 3.972.22 so it matches what @aws-sdk/core@3.974.8 requests, and bump fast-xml-parser from 5.5.7 to 5.7.2 to clear the medium advisory. The original justifications for the overrides are all satisfied at those versions.
  • Or, keep as-is and update the PR description to acknowledge the remaining medium comes from a stale in-repo override rather than unshipped upstream work — but this seems strictly worse than either option above.

Also a minor note for the description (non-blocking): the residual fast-uri@3.1.0 shows up as a bundled dep inside aws-cdk-lib (see node_modules/aws-cdk-lib/node_modules/fast-uri in the lockfile), not via @aws-sdk. It's filtered out by --omit=dev so it doesn't break the audit gate, but the description attributes it to the wrong place.

Comment threadpackage-lock.json
@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
Both override conditions are now met by upstream:
- @aws-sdk/xml-builder@3.972.22 pins fast-xml-parser@5.7.2
- @aws-sdk/core@3.974.8 requires @aws-sdk/xml-builder ^3.972.22
Removing the overrides allows the natural resolution to pick up
the patched versions, clearing the remaining moderate advisory
(GHSA-gh4j-gqv2-49f6, fast-xml-parser < 5.7.0).
security:audit now reports 0 vulnerabilities (--omit=dev).
@github-actionsgithub-actionsBot added size/xs PR size: XS and removed size/xs PR size: XS labels May 8, 2026
@HweinstockHweinstock reopened this May 8, 2026
@github-actionsgithub-actionsBot added size/xs PR size: XS agentcore-harness-reviewing AgentCore Harness review in progress and removed size/xs PR size: XS labels May 8, 2026

@agentcore-cli-automationagentcore-cli-automation left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for following up on the override cleanup. Commit a46fe2d does exactly what the prior review asked for:

  • Removes fast-xml-parser and @aws-sdk/xml-builder from both overrides and overridesComments in package.json (lines 150–157 now match the remaining override set).
  • Regenerates the lockfile so @aws-sdk/xml-builder@3.972.22 (what @aws-sdk/core@3.974.8 actually requests) and fast-xml-parser@5.7.2 resolve naturally, which also clears the residual medium advisory GHSA-gh4j-gqv2-49f6.

Verification on the new lockfile:

  • Top-level fast-xml-parser@5.7.2, fast-xml-builder@1.2.0, fast-uri@3.1.2, uuid@11.1.1, @aws-sdk/xml-builder@3.972.22, @aws-sdk/core@3.974.8 — all patched against the linked GHSAs.
  • The only remaining fast-uri@3.1.0 copy is nested under node_modules/aws-cdk-lib/node_modules/fast-uri and is marked dev: true in the lockfile, so it's correctly excluded by security:audit (npm audit --audit-level=high --omit=dev).
  • No other overrides are stale — minimatch and glob still have the upstream pinning reasons described in overridesComments.

Core CI on the latest SHA is green (lint, typecheck, security, format, unit-test 1/3, 2/3, 3/3, secrets, schema-check, CodeQL). The still-pending/failing entries in gh pr checks are either cancelled runs from the earlier commit or jobs still in progress.

One non-blocking nit (same as flagged in the previous review): the PR description still says "Remaining moderate vulnerabilities are in @aws-sdk transitive deps (fast-xml-parser < 5.7.0) which require upstream SDK updates" — this is now out of date since this PR does in fact pull in fast-xml-parser@5.7.2. Worth updating the description before merge, but not a code change.

LGTM.

@github-actionsgithub-actionsBot removed the agentcore-harness-reviewing AgentCore Harness review in progress label May 8, 2026
@Hweinstock
Hweinstock marked this pull request as ready for review May 8, 2026 18:04
@Hweinstock
Hweinstock requested a review from a teamMay 8, 2026 18:04
@tejaskash
tejaskash merged commit 715a5a2 into aws:mainMay 8, 2026
33 of 46 checks passed
@Hweinstock
Hweinstock deleted the fix/npm-audit-vulnerabilities branch July 13, 2026 13:04
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size/xsPR size: XS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@Hweinstock@tejaskash@agentcore-cli-automation