spatie / spatie.be

The source code of spatie.be
https://spatie.be
475 stars 169 forks source link

Replace polyfill CDN with Cloudflare cdnjs asap #319

Closed andreluis-oliveira closed 4 months ago

andreluis-oliveira commented 4 months ago

polyfill.io is compromised.

polyfill.io now available on cdnjs: reduce your supply chain risk

https://x.com/triblondon/status/1761852117579427975

malicious javascript injected into 100,000 websites

This updates [Polyfill.io] scripts to cdnjs's polyfill service, which is a deployment that is identical to the original Polyfill.io service.

@freekmurze

sebastiandedeyne commented 4 months ago

Hi @andreluis-oliveira,

Thanks for the notice and PR!

I'm going to close this because I removed the polyfills altogether instead: https://github.com/spatie/spatie.be/commit/943b8fd0cf9858435d435a557c207b7c73359e7b