ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)
npm released versions 2.15.1 and 3.8.3 to fix a bearer token vulnerability. The CLI sent tokens with every request instead of only to the registry, allowing attackers to collect tokens and impersonate users. Users should invalidate old tokens and run npm login.
Tap to vote and see what everyone thinks.
Summary by ByteBrief