โ† Feed
๐Ÿ’ป **TanStack weighs invitation-only pull requests after supply chain attack**

Shai-Hulud worm exploited GitHub Actions misconfiguration to poison shared cache, now project weighing nuclear option on unsolicited contributions

๐Ÿ”— https://www.theregister.com/security/2026/05/18/tanstack-weighs-invitation-only-pull-requests-after-supply-chain-attack/5241899

#tech #news

Comments (0)