Article 5529P When one open-source package riddled with vulns pulls in dozens of others, what's a dev to do?

When one open-source package riddled with vulns pulls in dozens of others, what's a dev to do?

by
from The Register on (#5529P)
Snyk survey puts cross-site scripting top of the list for security holes - but watch out for prototype pollution too

Open-source security specialist Snyk has released a new survey combining data on vulnerabilities in available packages with responses from developers and DevOps teams about how they handle the challenge this poses....

External Content
Source RSS or Atom Feed
Feed Location http://www.theregister.co.uk/headlines.atom
Feed Title The Register
Feed Link https://www.theregister.com/
Feed Copyright Copyright © 2024, Situation Publishing
Reply 0 comments