09-09-2021 11:36 via zdnet.com

GitHub tackles severe vulnerabilities in Node.js packages

Bugs impacting tar and @npmcli/arborist were reported through a bug bounty program.
Read more »