Tag
browserslist
Safeguard articles tagged "browserslist" — guides, analysis, and best practices for software supply chain and application security.
3 articles
Vulnerability Analysis
browserslist ReDoS vulnerability (CVE-2021-23364)
A ReDoS flaw in browserslist (CVE-2021-23364) let crafted query strings stall builds across the JS ecosystem. Here's the full breakdown and fix.
Jan 3, 20267 min read
Vulnerability Analysis
CVE-2021-23364: ReDoS in browserslist
A regex denial of service in browserslist (CVE-2021-23364) could stall Node.js builds via crafted version strings. Here's the fix and how Safeguard catches it.
Oct 11, 20257 min read
Open Source
npm autoprefixer: Is It Safe, and How Should You Use It?
The npm autoprefixer package is a PostCSS plugin that adds vendor prefixes to your CSS based on Browserslist data. Here is how it works, why it is a build-time dependency, and how to keep it safe.
Jul 8, 20255 min read
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.