
Security News
Critical Security Vulnerability in React Server Components
React disclosed a CVSS 10.0 RCE in React Server Components and is advising users to upgrade affected packages and frameworks to patched versions now.
@kiwicom/nitro
Advanced tools
Stuff common for our webs! :fire:
yarn add @kiwicom/nitroFollow the adoption guide — includes mandatory stuff to implement on all FEs.
Here https://kiwi.wiki/fe-core/nitro/
Note: the last
/is important in the URL as the JS and CSS assets won't be loaded correctly otherwise.
Read the CONTRIBUTING guide on how to do changes, write commit messages and release!
MIT
FAQs
Nitro's components.
We found that @kiwicom/nitro demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 6 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
React disclosed a CVSS 10.0 RCE in React Server Components and is advising users to upgrade affected packages and frameworks to patched versions now.

Research
/Security News
We spotted a wave of auto-generated “elf-*” npm packages published every two minutes from new accounts, with simple malware variants and early takedowns underway.

Security News
TypeScript 6.0 will be the last JavaScript-based major release, as the project shifts to the TypeScript 7 native toolchain with major build speedups.