Comment by RhodesianHunter
2 years ago
That's only true for libraries with zero transitive dependencies.
Otherwise you're almost guaranteed to be pulling in un-patched vulnerabilities.
2 years ago
That's only true for libraries with zero transitive dependencies.
Otherwise you're almost guaranteed to be pulling in un-patched vulnerabilities.
No comments yet
Contribute on Hacker News ↗