DEV Community

# dependencies

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
npm's Implicit Dependency Execution Exposes Users to Security Risks: Explicit Confirmation Needed

npm's Implicit Dependency Execution Exposes Users to Security Risks: Explicit Confirmation Needed

Comments
9 min read
Blind `npm install` Execution Risks Security Vulnerabilities: Review Lockfiles to Mitigate Threats

Blind `npm install` Execution Risks Security Vulnerabilities: Review Lockfiles to Mitigate Threats

Comments
10 min read
Addressing NPM Dependency Risks: Strategies for a Secure and Robust Software Ecosystem

Addressing NPM Dependency Risks: Strategies for a Secure and Robust Software Ecosystem

Comments
8 min read
Securing Python Dependencies: Balancing Practicality and Risk After Supply Chain Attacks Like Telnyx Compromise

Securing Python Dependencies: Balancing Practicality and Risk After Supply Chain Attacks Like Telnyx Compromise

Comments
10 min read
Securing Python Package Management: Strategies to Mitigate Supply Chain Attacks and Ensure Dependency Integrity

Securing Python Package Management: Strategies to Mitigate Supply Chain Attacks and Ensure Dependency Integrity

Comments
12 min read
Malicious litellm Python Package Versions 1.82.7 and 1.82.8 Removed from PyPI to Prevent Credential Theft

Malicious litellm Python Package Versions 1.82.7 and 1.82.8 Removed from PyPI to Prevent Credential Theft

Comments
6 min read
Dependency Management with Claude Code: Auditing, Updating, and Staying Secure

Dependency Management with Claude Code: Auditing, Updating, and Staying Secure

Comments
3 min read
Exploration: Composer Path Repositories for Local Drupal Module Dependencies

Exploration: Composer Path Repositories for Local Drupal Module Dependencies

Comments
2 min read
The Supply Chain Attack That's Already In Your Codebase

The Supply Chain Attack That's Already In Your Codebase

Comments
6 min read
Supply Chain Attacks: How Compromised Dependencies Weaponize Your Entire AI Infrastructure

Supply Chain Attacks: How Compromised Dependencies Weaponize Your Entire AI Infrastructure

Comments
11 min read
How Go's Standard Library Streamlines Small App Development by Minimizing Third-Party Dependencies

How Go's Standard Library Streamlines Small App Development by Minimizing Third-Party Dependencies

6
Comments 2
13 min read
SwiftUI Dependency Graph Visualization & Auditing (Enforce Architecture, Don’t Trust It)

SwiftUI Dependency Graph Visualization & Auditing (Enforce Architecture, Don’t Trust It)

Comments
2 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.