This site does not allow itself to be embedded. You can still read it on the original site — the toolbar below keeps your place in the directory.
Last week I found out my blog was shipping a vulnerable dependency. Not one I installed directly, but one hiding two levels deep in the dependency tree: fast-xml-parser . The Vulnerability Versions 4.3.6 through 5.3.3 of fast-xml-parser throw a RangeError when they encounter out-of-range numeric character entities like or . That might sound obscure, but it means any application that processes…
Comments
Nothing yet. Say the first thing.
Sign in to join the conversation.