Forem

npm

Node Package Manager

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
axios@1.14.1 Supply Chain Attacke: Was jetzt zu tun ist
Cover image for axios@1.14.1 Supply Chain Attacke: Was jetzt zu tun ist

axios@1.14.1 Supply Chain Attacke: Was jetzt zu tun ist

Comments
7 min read
axios@1.14.1 Tedarik Zinciri Saldırısı: Şimdi Ne Yapmalı
Cover image for axios@1.14.1 Tedarik Zinciri Saldırısı: Şimdi Ne Yapmalı

axios@1.14.1 Tedarik Zinciri Saldırısı: Şimdi Ne Yapmalı

Comments
8 min read
Tấn Công Chuỗi Cung Ứng axios@1.14.1: Cần Làm Gì Ngay?
Cover image for Tấn Công Chuỗi Cung Ứng axios@1.14.1: Cần Làm Gì Ngay?

Tấn Công Chuỗi Cung Ứng axios@1.14.1: Cần Làm Gì Ngay?

Comments
10 min read
512,000 Lines of Claude Code Leaked Through a Single .npmignore Mistake

512,000 Lines of Claude Code Leaked Through a Single .npmignore Mistake

Comments
7 min read
Case Study: How I Dogfood DevRadar Guard on a 954-Dependency Project

Case Study: How I Dogfood DevRadar Guard on a 954-Dependency Project

1
Comments
4 min read
Copy-Paste Components vs npm Packages: shadcn/ui vs Ninna UI in 2026
Cover image for Copy-Paste Components vs npm Packages: shadcn/ui vs Ninna UI in 2026

Copy-Paste Components vs npm Packages: shadcn/ui vs Ninna UI in 2026

Comments
5 min read
Attaque de la chaîne d'approvisionnement axios@1.14.1 : Que faire maintenant
Cover image for Attaque de la chaîne d'approvisionnement axios@1.14.1 : Que faire maintenant

Attaque de la chaîne d'approvisionnement axios@1.14.1 : Que faire maintenant

1
Comments
9 min read
Compromised npm Maintainer Account Publishes Malicious Axios Versions with Backdoor via `plain-crypto-js` Dependency

Compromised npm Maintainer Account Publishes Malicious Axios Versions with Backdoor via `plain-crypto-js` Dependency

Comments
11 min read
The axios Supply Chain Attack Just Proved Why Static Analysis Matters More Than Ever

The axios Supply Chain Attack Just Proved Why Static Analysis Matters More Than Ever

Comments
4 min read
npm's Implicit Dependency Execution Exposes Users to Security Risks: Explicit Confirmation Needed

npm's Implicit Dependency Execution Exposes Users to Security Risks: Explicit Confirmation Needed

Comments
9 min read
How I Turned 4 Sites and a Shared Lib Into One pnpm Workspace
Cover image for How I Turned 4 Sites and a Shared Lib Into One pnpm Workspace

How I Turned 4 Sites and a Shared Lib Into One pnpm Workspace

1
Comments
11 min read
API 개발자를 위한 NPM 의존성 보안 완벽 가이드: 공급망 보안 강화
Cover image for API 개발자를 위한 NPM 의존성 보안 완벽 가이드: 공급망 보안 강화

API 개발자를 위한 NPM 의존성 보안 완벽 가이드: 공급망 보안 강화

Comments
3 min read
A fully-featured React loader overlay component

A fully-featured React loader overlay component

Comments
1 min read
Blind `npm install` Execution Risks Security Vulnerabilities: Review Lockfiles to Mitigate Threats

Blind `npm install` Execution Risks Security Vulnerabilities: Review Lockfiles to Mitigate Threats

Comments
10 min read
axios Got Hacked. If You Ran npm install Yesterday, Read This Now.
Cover image for axios Got Hacked. If You Ran npm install Yesterday, Read This Now.

axios Got Hacked. If You Ran npm install Yesterday, Read This Now.

Comments
4 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.