維護者破壞熱門node-ipc套件抗議俄羅斯入侵烏克蘭 - iThome Online

3/20/2022 12:00:00 AM3 years 1 month ago
NPM套件node-ipc被維護者添加額外相依項目Peacenotwar,來表達反對俄羅斯入侵烏克蘭的立場,而類似事件一再發生,凸顯出軟體供應鏈易遭攻擊的問題
NPMNode Package ManagerSnyk315JavaScriptVue.jsNPMnode-ipcPeacenotwa SnykSnykCVE-2022-23812 38NPMBrandon Nozaki MillerRIAEvangelistPeacenotwarNPMNode 315NPMnode-ipcPeacenotwarnode-ipcJavaScriptVue.… [+206 chars]
full article...