
Security News
OWASP 2025 Top 10 Adds Software Supply Chain Failures, Ranked Top Community Concern
OWASP’s 2025 Top 10 introduces Software Supply Chain Failures as a new category, reflecting rising concern over dependency and build system risks.
@cornerstonejs/codec-openjpeg
Advanced tools
JS/WebAssembly build of [OpenJPEG](https://github.com/uclouvain/openjpeg)
This library is a JavaScript port made possible by emscripten and Chris Hafey. It is a JavaScript and WebAssembly build of OpenJPEG.
...
Using npm:
$ npm install @cornerstonejs/openjpegjs
Using yarn:
$ yarn add @cornerstonejs/openjpegjs
Using unpkg CDN:
<script src="https://unpkg.com/@???/openjpegjs"></script>
Try it in your browser here
// JS / WASM promises resolve the library
const openjpegwasm = await OpenJPEGWASM;
const openjpegjs = await OpenJPEGJS;
// Decoder
const J2KDecoder = new openjpegjs.J2KDecoder();
// Encoder
const J2KEncoder = new openjpegjs.J2KEncoder();
J2KDecoder#getEncodedBuffer([encodedBitStreamLength: int]): ArrayBufferJ2KDecoder#getDecodedBuffer(): ArrayBufferJ2KDecoder#readHeader(): ?J2KDecoder#calculateSizeAtDecompositionLevel(decodeLevel: int): voidJ2KDecoder#decode(): voidJ2KDecoder#decodeSubResolution(decodeLevel: int, decodeLayer: int)J2KDecoder#getFrameInfo(): FrameInfoJ2KDecoder#getNumDecomposition(): intJ2KDecoder#getIsReversible(): boolJ2KDecoder#getProgressionOrder(): intJ2KDecoder#getImageOffset(): PointJ2KDecoder#getTileSize(): SizeJ2KDecoder#getTileOffset(): PointJ2KDecoder#getBlockDimensions(): SizeJ2KDecoder#getNumLayers(): intJ2KDecoder#getColorSpace(): int// ~ Setup
// const encodedArrayBuffer = ...;
const fullEncodedBitStream = new Uint8Array(encodedArrayBuffer);
const numBytes = 0;
const encodedBitStream = new Uint8Array(encodedArrayBuffer, 0, fullEncodedBitStream.length -numBytes);
// ~ DECODE
const encodedBuffer = decoder.getEncodedBuffer(encodedBitStream.length);
encodedBuffer.set(encodedBitStream);
decoder.decode(); // or .decodeSubResolution() to go by layer or level
// ~ Display (see example index.html file)
const decodedBuffer = decoder.getDecodedBuffer();
const frameInfo = decoder.getFrameInfo(); // width/height will be wrong if using decodeSubResolution
const interleaveMode = 2;
// In example index.html file
display(frameInfo, decodedBuffer, interleaveMode)
J2KEncoder#getDecodedBufferJ2KEncoder#getEncodedBufferJ2KEncoder#encodeJ2KEncoder#setDecompositionsJ2KEncoder#setQualityJ2KEncoder#setProgressionOrderJ2KEncoder#setDownSampleJ2KEncoder#setImageOffsetJ2KEncoder#setTileSizeJ2KEncoder#setTileOffsetJ2KEncoder#setBlockDimensionsJ2KEncoder#setNumPrecinctsJ2KEncoder#setPrecinctJ2KEncoder#setCompressionRatioIt can be difficult to contribute if your environment is not setup correctly. I highly recommend trying out VS Code's "Dev Containers" that make it easier to share and use a consistent development environment.
Remote-Containers: Open Folder in Containeryarn install in the main codecs foldergit submodule update --init --recursive in the main codecs folder to initiate submodulesyarn buildFAQs
JS/WebAssembly build of [OpenJPEG](https://github.com/uclouvain/openjpeg)
The npm package @cornerstonejs/codec-openjpeg receives a total of 18,130 weekly downloads. As such, @cornerstonejs/codec-openjpeg popularity was classified as popular.
We found that @cornerstonejs/codec-openjpeg demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 6 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
OWASP’s 2025 Top 10 introduces Software Supply Chain Failures as a new category, reflecting rising concern over dependency and build system risks.

Research
/Security News
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.

Security News
Socket CTO Ahmad Nassri discusses why supply chain attacks now target developer machines and what AI means for the future of enterprise security.