Y
Hacker News
new
|
ask
|
show
|
jobs
by
shortrounddev2
202 days ago
it's interesting that staying up to date with your dependencies is considered a vulnerability in Node
2 comments
bichiliad
202 days ago
Having a cooldown is different from never updating. I don’t think waiting a few days is a bad security practice in any environment, node or otherwise.
link
vrighter
202 days ago
But only if most of everyone else doesn't do so.
link
skwee357
202 days ago
People who live on the edge of updates always risk vulnerabilities and incompatibility issues. It’s not about node, but anything software related.
link