Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

This is how most software used to work before internet package managers, and it turns out that the same people who aren't good at checking their dependencies before automatically upgrading are also not good at constantly monitoring their dependencies for vulnerabilities.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: