Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> This stability does mean that old React (or Knockout, or whatever) applications will still work just fine for the end users, likewise without a single line changed.

Not in the current enterprise cyberops environment of needing to pass dependency security scans at all times.



It still works fine for end users, just not for the compliance department.


Depends on your SecOps. Ours shuts down apps with critical vulnerabilities if they're not patched within 48 hours.


The power of unreported vulns: uninterrupted use




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: