ended8월 7일· 1 sources
When ‘Are We Affected?’ Requires Reconstructing Yesterday’s npm Install
Why it matters
The concrete problem A package is reported compromised. Your security channel immediately fills with one question: did we ship it? Looking at the repository’s current dependency tree is not enough. Th...
1
Sources
+0
24h
—
Growth
45d
Active