
Research
/Security News
Critical Vulnerability in NestJS Devtools: Localhost RCE via Sandbox Escape
A flawed sandbox in @nestjs/devtools-integration lets attackers run code on your machine via CSRF, leading to full Remote Code Execution (RCE).
@sajari/sdk-react
Advanced tools
@sajari/sdk-react
is a client side javascript library of React Components for the
Sajari search platform to help build fast and powerful search interfaces.
React provides a simple and elegant way to structure user interfaces. The Sajari React SDK provides a way to seamlessly integrate the Sajari platform into any web-based app through the use of easily composable Components.
We also provide a vanilla Sajari JS library here.
It's easy to get up and running using one of our examples as a starting point. They're pre-configured with all the correct dependencies, so all you need to do is copy the example directory into your own workspace and you're on your way!
This module is distributed via npm which is bundled with
node and should be installed as one of your project's dependencies
:
We distribute the @sajari/sdk-react
library through NPM.
$ npm install --save @sajari/sdk-react
This package also depends on
react
. Please make sure you have those installed as well.
See the quick setup guide to setup a basic search.
For documentation, see sajari-sdk-react.netlify.app.
We use the MIT license
The browser support is dependent on the React library, which currently supports recent versions of Chrome, Firefox, Sajari, Opera, and IE9+. (17/8/2016)
FAQs
React SDK for the Sajari API
The npm package @sajari/sdk-react receives a total of 23 weekly downloads. As such, @sajari/sdk-react popularity was classified as not popular.
We found that @sajari/sdk-react demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 5 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
A flawed sandbox in @nestjs/devtools-integration lets attackers run code on your machine via CSRF, leading to full Remote Code Execution (RCE).
Product
Customize license detection with Socket’s new license overlays: gain control, reduce noise, and handle edge cases with precision.
Product
Socket now supports Rust and Cargo, offering package search for all users and experimental SBOM generation for enterprise projects.