taiga-family / taiga-ui

Angular UI Kit and components library for awesome people
https://taiga-ui.dev
Apache License 2.0
3.1k stars 408 forks source link

[SECURITY VULNERABILITY] In your codebase is a reference of the cdn com polyfill com io service #7986

Closed PriNova closed 3 days ago

PriNova commented 6 days ago

https://github.com/taiga-family/taiga-ui/blob/b4ca77b9fbd84ed6776d9605262fc975e65088d0/projects/demo/src/index.html#L143

This file is using the cdn.polyfill.io service which is known for injecting malicious code

Please use the cloudflare polyfill service

https://x.com/WeldPond/status/1805973940642119900