Skip to content

Conversation

ijusttookadnatest
Copy link
Collaborator

Add pnpm override to block malicious error-ex versions.

Context:
Recent supply chain attack compromised error-ex@1.3.3 and other popular packages.

Change:

  • Added pnpm.overrides in root package.json
  • Blocks error-ex versions > 1.3.2
  • Protects all workspaces from malicious versions

@ijusttookadnatest ijusttookadnatest merged commit 1208dbe into main Sep 9, 2025
3 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant