Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
angular-ui-router-resolve
Advanced tools
A module to shim support for exposing resolves (via $stateProvider
) on a $rootScope object, as well as exposing a $resolves
service. This is particularly useful in a component based architecture, where components are used as the main routing piece (which have their own controller decoupled from $stateProvider
controller).
npm install angular-ui-router-resolve --save
angular-ui-router-resolve
is exposed as a UMD module, and so can be seamlessly integrated with your module loader of choice. For instance:
import uiRouter from 'angular-ui-router';
import uiRouterResolve from 'angular-ui-router-resolve';
export default angular.module('yourApp', [
uiRouter,
uiRouterResolve
]);
After importing the module into your application, any resolves are available on $rootScope
as well as the $resolves
service.
$resolves
serviceConsider the following state config:
export default function someComponentConfig($stateProvider) {
'ngInject';
$stateProvider.state('yourApp.someComponent', {
url: '/some-component',
template: '<some-component></some-component>',
resolve: {
persons: function($http) {
'ngInject';
return $http.get('/some-data-source');
}
}
});
}
To get that persons
resolve property, a common approach is to add a basic controller to the state config (which works fine), and then add a bindings to someComponent
. However, the following can now be done:
export default class SomeComponentController {
constructor($resolves) {
'ngInject';
this.persons = $resolves.persons;
}
}
FAQs
An angular module to add resolves to $rootScope
The npm package angular-ui-router-resolve receives a total of 0 weekly downloads. As such, angular-ui-router-resolve popularity was classified as not popular.
We found that angular-ui-router-resolve demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.