▲ | patates 4 days ago | |||||||
aren't these already nuked and show up in the "npm audit" command? | ||||||||
▲ | epmatsw 4 days ago | parent | next [-] | |||||||
Annoyingly, npm audit relies on github's advisory DB, which is currently incorrectly flagging all versions of these packages, not just the compromised ones. | ||||||||
| ||||||||
▲ | martypitt 4 days ago | parent | prev [-] | |||||||
Nice - that's even better - thanks! TIL. |