amit kumar gupta
10 exploits
Active since Jun 2023
fast-xml-parser 4.1.3-5.3.4 - XSS
CVSS 9.3
fast-xml-parser: Entity Expansion Limits Bypassed When Set to Zero Due to JavaScript Falsy Evaluation
CVSS 5.9
fast-xml-parser affected by numeric entity expansion bypassing all entity expansion limits (incomplete fix for CVE-2026-26278)
CVSS 7.5
fast-xml-parser <5.3.8 - DoS
CVSS 7.5
fast-xml-parser 4.1.3-5.3.4 - XSS
CVSS 9.3
fast-xml-parser 4.1.3-5.3.5 - DoS
CVSS 7.5
fast-xml-parser <4.1.2 - Info Disclosure
CVSS 6.5
fast-xml-parser - DoS
CVSS 7.5
Fast-xml-parser < 4.4.1 - Denial of Service
CVSS 7.5
NPM Fast-xml-parser < 5.3.4 - Improper Input Validation
CVSS 7.5