This NPM package vulnerable to dependency confiuse vulnerability
Name: Anindya Ghoshal
security holding package
The npm package vpro-mediaplayer receives a total of 242 weekly downloads. As such, vpro-mediaplayer popularity was classified as not popular.
We found that vpro-mediaplayer demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket installs a Github app to automatically flag issues on every pull request and report the health of your dependencies. Find out what is inside your node modules and prevent malicious activity before you update the dependencies.