-
https://webjars.org/all gets quite a bit of traffic (relatively):
![image](https://github.com/user-attachments/assets/e1aacf8e-db08-4ae0-a388-0fbb2f8ffb89)
But I definitely question the value of t…
-
Vulnerable Library - bootstrap-3.3.7.jar
WebJar for Bootstrap
Library home page: http://webjars.org
Path to dependency file: /pom.xml
Path to vulnerable library: /home/wss-scanner/.m2/repository/org…
-
This repository has an awkward setup where it's created as a fork of [dsyer/webjars-locator-core](https://github.com/dsyer/webjars-locator-core) which in turn is a fork of [webjars/webjars-locator-cor…
-
`org.webjars.npm:htmx-ext-response-targets:2.0.0` contains two `response-targets.js` files. One in the root and one in the `test` directory.
Either the Webjar locator or the webjar building process…
-
I set up a sample repository to show step by step what I consider a problem.
1. `git clone git@github.com:mkurz/same-webjar-different-type.git`
1. Read the step by step guide I set up:
1. Start…
mkurz updated
10 months ago
-
## CVE-2018-14040 - Low Severity Vulnerability
Vulnerable Libraries - bootstrap-3.3.7.jar, bootstrap-3.1.1.min.js
bootstrap-3.3.7.jar
WebJar for Bootstrap
Library home page: http://webjars.org
Pat…
-
Vulnerable Library - bootstrap-3.3.7.jar
WebJar for Bootstrap
Library home page: http://webjars.org
Path to dependency file: /pom.xml
Path to vulnerable library: /home/wss-scanner/.m2/repository/org…
-
**What happened**:
1) Vulns in Java dep `pkg:maven/org.webjars/bootstrap@3.4.1` are not detected:
* [CVE-2024-6484](https://nvd.nist.gov/vuln/detail/CVE-2024-6584)
* [CVE-2024-6485](https…
-
## Proposal
A couple of times recently I’ve manually diffed Riff Raff artefacts from a pull request with those on the main branch, to understand exactly how the PR changes affect the final artefact…
-
According to https://github.com/jrburke/r.js/blob/master/build/example.build.js, module names are resolved relative to `baseUrl` if it is set or relative to the directory holding the build file if it …