Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
ember-searchable-select
Advanced tools
Data-down, actions up select-like menu with searching and filtering capabilities.
This addon is prepared for internal use at TED. We're happy to share our code as open-source, but be aware that it may not be maintianed for broader community use.
To get started, install this addon, ember-cli-sass, and include the ember-searchable-select styles in your app.scss.
ember install ember-searchable-select
ember install ember-cli-sass
@import "ember-searchable-select/style";
There are many ways to customize and configure ember-searchable-select. Full documentation and demos can be found at http://tedconf.github.io/ember-searchable-select/.
You will need the following things properly installed on your computer.
git clone
this repositorynpm install
bower install
ember server
npm test
(Runs ember try:testall to test your addon against multiple Ember versions)or to run a test server while developing:
ember test --server
ember build
PRs that do not include the following will not be merged:
tests/dummy
(if applicable)ember github-pages:commit --message "update gh-pages"
git push origin gh-pages
npm version $TYPE -m "message about this version"
where $TYPE indicates the semver release type, eg. patch
, major
or minor
. see the npm-version docs and (semver docs)[http://semver.org/] if you're not sure which appliesnpm publish
git push --tags
For more information on using ember-cli, visit http://www.ember-cli.com/.
FAQs
Data-down, actions up select-like menu with searching and filtering capabilities.
The npm package ember-searchable-select receives a total of 36 weekly downloads. As such, ember-searchable-select popularity was classified as not popular.
We found that ember-searchable-select demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.