←back to thread

1369 points universesquid | 1 comments | | HN request time: 0.001s | source
Show context
baloki ◴[] No.45178717[source]
A package on the list called ‘simple-swizzle’ turns out to be used in OpenNext which is an unexpected attack vector for sure.
replies(1): >>45180289 #
1. yread ◴[] No.45180289[source]
> DO. NOT. USE. THIS. PACKAGE

> Used by 9.9m

https://github.com/qix-/node-simple-swizzle