• custard_swollower@lemmy.world
    link
    fedilink
    arrow-up
    2
    ·
    1 day ago

    …and then you learn that packageX v1 is not maintained anymore and relies through a deep set of dependencies on a seriously vulnerable package (in a version which is also not maintained anymore).

    Sorry, I had a pretty eventful December :)