▲ | hfmuehleisen 5 days ago | ||||||||||||||||
Yes we tried, but npm would not let us because of "dependencies". We've reached out to them and are waiting for a response. In the meantime, we re-published the packages with newer versions so people won't accidentally install the compromised version. | |||||||||||||||||
▲ | herpdyderp 5 days ago | parent | next [-] | ||||||||||||||||
At least one thing is clear from this week: npm is too slow to respond. | |||||||||||||||||
| |||||||||||||||||
▲ | hfmuehleisen 5 days ago | parent | prev [-] | ||||||||||||||||
they have now removed the affected versions! |