
Research
/Security News
Critical Vulnerability in NestJS Devtools: Localhost RCE via Sandbox Escape
A flawed sandbox in @nestjs/devtools-integration lets attackers run code on your machine via CSRF, leading to full Remote Code Execution (RCE).
automatica-draw2d
Advanced tools
Create Visio like drawings, diagrams or workflows in JavaScript and HTML5.
Draw2D is a modern HTML 5 JavaScript library for visualization and interaction with diagrams and graphs. Draw2D touch makes it easy to create visual languages & tools of various kinds.
The new source code home of my http://www.draw2d.org project. New home because I switch the license to MIT.
https://freegroup.github.io/draw2d/index.html
nvm use v14.15.0
npm install
DIR=/examples yarn dev
./build.sh
npm version patch
npm publish
Connect your Raspi, Arduino or an WebUSB enabled Device. Use a visual programming language to connect, control, and play with all the sensors and tools.
Feel free to contact me if you want list your project here
FAQs
JS drag&drop lib
The npm package automatica-draw2d receives a total of 11 weekly downloads. As such, automatica-draw2d popularity was classified as not popular.
We found that automatica-draw2d demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
A flawed sandbox in @nestjs/devtools-integration lets attackers run code on your machine via CSRF, leading to full Remote Code Execution (RCE).
Product
Customize license detection with Socket’s new license overlays: gain control, reduce noise, and handle edge cases with precision.
Product
Socket now supports Rust and Cargo, offering package search for all users and experimental SBOM generation for enterprise projects.