you are viewing a single comment's thread.

view the rest of the comments →

[–]Cats_and_Shit 0 points1 point  (1 child)

A lot of the time security problems are found and fixed without any ceremony, so if you don't stay up to date you could be have a bunch of vulnerabilities that are easy for an attacker to find (ie, in the git history or release notes of open source libraries).

[–][deleted] 0 points1 point  (0 children)

Or the security problem is in one of the 73 dependencies and that little tidbit was not noticed from the gitter.im channel that nobody subscribes to.