
Security News
Axios Maintainer Confirms Social Engineering Attack Behind npm Compromise
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.
vws.pubsub (VisualWebServer PubSub) is a publish/subscribe system for communication between objects/modules of your code. It's rather similar to the event system of node, however with two additions: -- (optional) BUBBLING along a topic-tree and -- (optional) PERSISTANCE of publications for later retrieval/reference
It contains utilitiary functions that were copied (and adapted) from the jQuery library. It is developed, used and sponsored by K.lab (http://www.klab-berlin.com), LinkCloud (http://www.linkcloud.org) and ViSERiON (http://www.viserion.com) . It's client-side brother is realized as a jQuery plugin and also available for public use (MIT license).
$ npm install vws.pubsub
cd to node_modules/vws.pubsub
make
there is a detailed description of all functions in the source-code ...
FAQs
a pubsub system with bubbling and persistence
We found that vws.pubsub demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.

Security News
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.