VisDunneRight / jovi-benchmark-sets

https://visdunneright.github.io/jovi-benchmark-sets/
Other
0 stars 0 forks source link

Pollyfill.io is vulnerable #2

Closed agardnerIT closed 4 weeks ago

agardnerIT commented 2 months ago

Use of pollyfill.io is insecure. I suggest you remove it from your site.

https://sansec.io/research/polyfill-supply-chain-attack

picorana commented 4 weeks ago

Fixed by upgrading quarto version, thanks