fast-xml-parser

npm

Is fast-xml-parser safe to use?

The latest brin safety scan flagged fast-xml-parser v5.3.4 with risk indicators that warrant review. 1 known CVE vulnerability. Trust score: 65/100. Review the findings below before use. This is an automated assessment and may contain errors.

Install (safety-checked)

fast-xml-parser Has Warnings

Warnings detected due to potential concerns

warning
CVEs

1

Threats

0

Install Scripts

0

Risk Indicators

  • Can spawn child processes

fast-xml-parser CVE Vulnerabilities (1)

fast-xml-parser has RangeError DoS Numeric Entities Bug

Fixed in: 5.3.4

brin Recommendations

  • This package has warnings detected. Evaluate the specific concerns before proceeding.
  • Update to a patched version to address 1 high-severity CVE.

Install with brin add fast-xml-parser to automatically apply these checks before installation.

This is an automated, point-in-time assessment and may contain errors. Findings are risk indicators, not confirmed threats. Security posture may change over time. Maintainers can dispute findings via the brin review process.

fast-xml-parser Capabilities & Permissions

What fast-xml-parser can access when installed. Review these capabilities before using with AI agents like Cursor, Claude Code, or Codex.

Filesystem Access

Reads and writes to the filesystem.

/usr/ (rw)package.json (rw)package.json (rw)

Process Spawning

This package can spawn child processes.

AGENTS.md for fast-xml-parser

Good instructions lead to good results. brin adds fast-xml-parser documentation to your AGENTS.md so your agent knows how to use it properly—improving both safety and performance.

brin init

Vercel's research: 100% accuracy with AGENTS.md vs 53% without →

fast-xml-parser Documentation & Source Code

For the full fast-xml-parser README, API documentation, and source code, visit the official package registry.

Frequently asked questions about fast-xml-parser safety

Weekly Downloads

56.3M

Version

5.3.4

License

MIT

Other Versions

Last Scanned

Feb 1, 2026

Trust Score

65/100·Legitimacy signals, not safety

CVEs (1)

CVE-2026-25128

fast-xml-parser has RangeError DoS Numeric Entities Bug

Fixed in: 5.3.4

Capabilities

Filesystem

Reads & Writes files

Process

Spawns child processes

Is fast-xml-parser Safe? | npm Safety Scan - brin