Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
MultiValue Object Mapper
[2.0.0-alpha.2] - 2022-03-17
findById
and findByIds
database features were returning empty string when a record was not found. However, the types for the responses were anticipating null
to be returned in this scenario. The handling code was anticipating null
and was returning an empty Model
instance instead of returning null
as expected. Use of null
is a better pattern and the database code was adjusted to return null
instead of empty string. (#37)unibasic
path for db server feature deployments was resolving to the incorrect file system location (#37)Document
and Model
constructors were incorrectly only allowing an option of either record
or data
to be supplied. It is valid syntax to supply both so the restrictions on the constructor options were relaxed. (#37)FAQs
Multivalue Object Mapper
The npm package mvom receives a total of 169 weekly downloads. As such, mvom popularity was classified as not popular.
We found that mvom demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.