logoalt Hacker News

adverblyyesterday at 10:44 PM2 repliesview on HN

Seriously!

We also suffer from this. Although in some cases it's due to a Dev dependency. It's crazy how much noise it adds specifically from ReDoS...


Replies

monkpittoday at 3:32 AM

ReDoS cves in your dev dependencies like playwright that could literally never be exploited, so annoying.

robszumskiyesterday at 11:00 PM

Totally hear you on the noise…but we should want to auto-merge vs ignore, no? Given the right tooling of course.

show 3 replies