Hacker News
new
past
comments
ask
show
jobs
points
by
egnehots
4 hours ago
|
comments
by
orlp
4 hours ago
|
[-]
The above is a general rule protecting you against supply chain attacks by default. If there is an important CVE published with a patch you can manually review that patch and bypass the minimum-age requirement for that dependency specifically.
reply