
Security News
Re-Enabled GitHub Actions Expose Thousands of Repositories to Mini Shai-Hulud
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.
@cloudflare/component-progress
Advanced tools
Cloudflare Progress Component
Installation with yarn is recommended
$ yarn add @cloudflare/component-progress
import React from 'react';
import { Progress } from '../../src';
class ProgressComponent extends React.Component {
constructor(props) {
super(props);
this.state = {
activeStep: 'foo'
};
}
handleStepChange(step) {
this.setState({
activeStep: step
});
}
render() {
return (
<Progress
active={this.state.activeStep}
onChange={this.handleStepChange.bind(this)}
steps={[
{ id: 'foo', label: 'Foo', disabled: false },
{ id: 'bar', label: 'Bar', disabled: false },
{ id: 'baz', label: 'Baz', disabled: true }
]}
/>
);
}
}
export default ProgressComponent;
FAQs
Cloudflare Progress Component
We found that @cloudflare/component-progress demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 4 open source maintainers collaborating on the project.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.

Research
/Security News
The compromise affects MemTensor's MemOS, an open source memory framework for large language models (LLMs) and AI agents. Both npm package @memtensor/memos-cloud-openclaw-plugin and the PyPI package MemoryOS are compromised. They drop cross-platform Go binaries that exfiltrate developer secrets.