
Research
/Security News
Critical Vulnerability in NestJS Devtools: Localhost RCE via Sandbox Escape
A flawed sandbox in @nestjs/devtools-integration lets attackers run code on your machine via CSRF, leading to full Remote Code Execution (RCE).
react-emergence
Advanced tools
A React wrapper for detecting element visibility in the browser, using https://xtianmiller.github.io/emergence.js/.
react-emergence is a simple way for React users to pull in and use this.
Explanations for individual arguments can be found on the emergence git page. All credits go to the original author for the Emergence library.
npm install react-emergence
or
yarn add react-emergence
<EmergeContainer>
<Emerge>
<div className="element-to-emerge"/>
</Emerge
</EmergeContainer
)
className
- string Custom classname for the container. Ignored if useWindowAsContainer is true*children
- node React children to render inside the container (required)useWindowAsContainer
- boolean Use the default container (window)args
- object Set of custom args - see https://xtianmiller.github.io/emergence.js/ for more informationchildren
- node React component to be handled as as an emerge element (required)FAQs
React wrapper for detecting element visibility in the browser
The npm package react-emergence receives a total of 2 weekly downloads. As such, react-emergence popularity was classified as not popular.
We found that react-emergence demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
A flawed sandbox in @nestjs/devtools-integration lets attackers run code on your machine via CSRF, leading to full Remote Code Execution (RCE).
Product
Customize license detection with Socket’s new license overlays: gain control, reduce noise, and handle edge cases with precision.
Product
Socket now supports Rust and Cargo, offering package search for all users and experimental SBOM generation for enterprise projects.