
Security News
Re-Enabled GitHub Actions Expose Thousands of Repositories to Mini Shai-Hulud
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.
@vtx/modals2
Advanced tools
弹窗组件。
6.x is the antd6 / React18 / VTX4 edition. It is intended for upgraded projects only.5.x release line.visible, id, title, theme, code, tabChose, defaultActiveKey, modalHeight, width, mask, and onCancel.@ant-design/icons 6, React18, and VTX4.@vtx/modals2/lib/vtx-device-modal, so business projects only change the installed package version.visible, destroyOnClose, dropdownClassName, overlay, and message.warn with antd6-compatible APIs while preserving external business props.@vtx/components/lib/* deep imports.TODO
TODO
# install dependencies
$ npm install
# develop library by docs demo
$ npm start
# build library source code
$ npm run build
# build library source code in watch mode
$ npm run build:watch
# build docs
$ npm run docs:build
# Locally preview the production build.
$ npm run docs:preview
# check your project for potential problems
$ npm run doctor
MIT
FAQs
The npm package @vtx/modals2 receives a total of 0 weekly downloads. As such, @vtx/modals2 popularity was classified as not popular.
We found that @vtx/modals2 demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 8 open source maintainers collaborating on the project.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.

Research
/Security News
The compromise affects MemTensor's MemOS, an open source memory framework for large language models (LLMs) and AI agents. Both npm package @memtensor/memos-cloud-openclaw-plugin and the PyPI package MemoryOS are compromised. They drop cross-platform Go binaries that exfiltrate developer secrets.