VisDunneRight / jovi-benchmark-sets

https://visdunneright.github.io/jovi-benchmark-sets/
Other
0 stars 0 forks source link

Pollyfill.io is vulnerable #2

Closed agardnerIT closed 3 months ago

agardnerIT commented 4 months ago

Use of pollyfill.io is insecure. I suggest you remove it from your site.

https://sansec.io/research/polyfill-supply-chain-attack

picorana commented 3 months ago

Fixed by upgrading quarto version, thanks