Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
node-red-contrib-http-request-ucg
Advanced tools
A Node-RED node for performing http(s) requests that use Request library with optimized proxy support. updated for timeout value exposure
This is a node-red node for performing http(s) requests that use Request library with optimized proxy support Updated to expose the timeout value in the GUI
run npm -g install node-red-contrib-http-request-ucg
Based on the node-red core node for performing http/https requests and on the fabulous Request library which a lot of features for proxy, steaming, or TLS/SSL support.
Request became a popular and proven simplified HTTP Client to make http(s) calls. It supports a lot of features/options for advanced usage.
A simple example : The node-red-contrib-http-request module support HTTPS on HTTP proxy using CONNECT request. This is not feasible using the Core Node-RED HTTP Request module.
By contributing to our http request node, you'll be supporting an evolutive and robust HTTP client for Node-RED.
FAQs
A Node-RED node for performing http(s) requests that use Request library with optimized proxy support. updated for timeout value exposure
The npm package node-red-contrib-http-request-ucg receives a total of 557 weekly downloads. As such, node-red-contrib-http-request-ucg popularity was classified as not popular.
We found that node-red-contrib-http-request-ucg demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.