zooniverse / pfe-lab

Project and Organization management functions for PFE
https://lab.zooniverse.org/
Apache License 2.0
0 stars 5 forks source link

[Security] polyfill.io runs malware in browsers #680

Closed eatyourgreens closed 2 days ago

eatyourgreens commented 1 week ago

https://github.com/zooniverse/pfe-lab/blob/0e5a6b854b0f8819f94ba85c61c339fab2d4d61d/src/index.tpl.html#L20

https://sansec.io/research/polyfill-supply-chain-attack

eatyourgreens commented 1 week ago

See also https://github.com/zooniverse/Panoptes-Front-End/issues/7051

shaunanoordin commented 2 days ago

Closed by #681