Skip to content

Conversation

@iowillhoit
Copy link
Contributor

Adds a temporary check for vulnerable npm packages from a recent supply chain attack
https://www.sonatype.com/blog/npm-chalk-and-debug-packages-hit-in-software-supply-chain-attack

@W-19595600@

Spoofed examples of this working
Screenshot 2025-09-09 at 2 59 02 PM

Screenshot 2025-09-09 at 2 58 54 PM

@iowillhoit iowillhoit merged commit 68b3bb1 into main Sep 9, 2025
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants