
Research
/Security News
Critical Vulnerability in NestJS Devtools: Localhost RCE via Sandbox Escape
A flawed sandbox in @nestjs/devtools-integration lets attackers run code on your machine via CSRF, leading to full Remote Code Execution (RCE).
rsbuild-plugin-html-minifier-terser
Advanced tools
An Rsbuild plugin to use [html-minifier-terser](https://github.com/terser/html-minifier-terser) to minify the HTML outputs.
An Rsbuild plugin to use html-minifier-terser to minify the HTML outputs.
Install:
npm add rsbuild-plugin-html-minifier-terser -D
Add plugin to your rsbuild.config.ts
, HTML will be minified by default and JS minimization affected by Rsbuild's config.
// rsbuild.config.ts
import { pluginHtmlMinifierTerser } from 'rsbuild-plugin-html-minifier-terser'
export default {
plugins: [pluginHtmlMinifierTerser()],
}
The plugin could accept an parameter of type HtmlMinifierOptions | ((options: HtmlMinifierOptions) => HtmlMinifierOptions)
.
Passing options to customize the minification, fields listed in the options will override the default options.
export default {
plugins: [
pluginHtmlMinifierTerser({
// `minifyCSS` will be set to false
minifyCSS: false,
}),
],
}
A callback function can be passed to the plugin to customize the minification options based on the default options, and the return value will be used as the final options.
export default {
plugins: [
pluginHtmlMinifierTerser((options) => {
// customize options here
return options
}),
],
}
MIT.
FAQs
An Rsbuild plugin to use [html-minifier-terser](https://github.com/terser/html-minifier-terser) to minify the HTML outputs.
The npm package rsbuild-plugin-html-minifier-terser receives a total of 89,414 weekly downloads. As such, rsbuild-plugin-html-minifier-terser popularity was classified as popular.
We found that rsbuild-plugin-html-minifier-terser demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
A flawed sandbox in @nestjs/devtools-integration lets attackers run code on your machine via CSRF, leading to full Remote Code Execution (RCE).
Product
Customize license detection with Socket’s new license overlays: gain control, reduce noise, and handle edge cases with precision.
Product
Socket now supports Rust and Cargo, offering package search for all users and experimental SBOM generation for enterprise projects.