
Research
Malicious npm Packages Impersonate Flashbots SDKs, Targeting Ethereum Wallet Credentials
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
then-mysql2
Advanced tools
A wrapper for the MySQL driver to use promises, connection pooling and nicer APIs all round
A wrapper for the npm MySQL2 driver to use promises, connection pooling and nicer APIs all round
NPM - (https://www.npmjs.com/package/then-mysql2)
npm install then-mysql2
To construct a new connection pool, simply run:
var pool = new MySql({
host: 'localhost',
user: 'me',
passowrd: 'secret'
});
pool.query('SELECT 1 + 1 AS solution').done(function (result) {
assert(result[0].solution === 2);
pool.dispose().done();
});
Return a promise for an array of objects from a SQL query. The query may optionally contain ?
s to be replaced with escaped values from values
which should be an array.
Call a database procedure. If it returns only one set of values, that set of values is returned as an array of objects. If it returns multiple sets of values then they are returned as an array.
e.g.
pool.call(addprocedure, [1, 2]).done(function (result) {
assert(result[0].solution === 3);
});
MIT
FAQs
A wrapper for the MySQL driver to use promises, connection pooling and nicer APIs all round
We found that then-mysql2 demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
Security News
Ruby maintainers from Bundler and rbenv teams are building rv to bring Python uv's speed and unified tooling approach to Ruby development.
Security News
Following last week’s supply chain attack, Nx published findings on the GitHub Actions exploit and moved npm publishing to Trusted Publishers.