And learn more about the latest CVE in the angularJS ecosystem and upcoming HeroDevs events...
View in browser
B

April 2024

angular-translate CVE-2024-33665

What you need to know:

The popular JavaScript translation library for AngularJS 1.x apps, angular-translate, has recently been identified with a critical cross-site scripting (XSS) vulnerability. Tagged as CVE-2024-33665, this security flaw presents significant risks, mainly as it affects all versions from v2.4.0 onwards. Angular-translate is widely utilized for dynamic content translation across various applications, making this vulnerability particularly impactful across the AngularJS ecosystem.

 

With HeroDevs’ AngularJS Essentials add-on, you can extend your security coverage to 10 critical dependencies on AngularJS, including angular-translate, to address this vulnerability.

Learn more about AngularJS Essentials add-on

Upcoming Events

DrupalCon Portland

Join us in May to explore what the sunset of Drupal 7 means for you. 

Register Now

Midcon Module Mixer

Don’t miss our rooftop party during DrupalCon - free drinks and good people on Wednesday, May 8th!

RSVP

VueConf New Orleans

Meet us in New Orleans to discuss your security options for Vue 2.

Register Now
HeroDevs_RGB_Icon-1

New Product Announcement: jQuery NES

As the web evolves, open source technologies like jQuery face significant end-of-life (EOL) challenges. At HeroDevs, we understand the critical need to maintain security in EOL open source software, which is why we're excited to offer Never-Ending Support (NES) for versions 1.6.x and 2.2.x of jQuery. Our Never-Ending Support products ensure your jQuery-based applications remain secure, compliant, and compatible.

Learn more

Our CEO was nominated for EY Entrepreneur of the Year!

 

We're proud to announce that our Founder, Aaron Frost, has been nominated for the EY Entrepreneur of the Year. This recognition highlights his commitment to innovation and excellence in creating a more sustainable tech world.

Read more about the nomination

Lessons from XZ Utils: Toward a Sustainable Open Source Ecosystem

 

After the XZ compromise, CISA sent out a reminder of their efforts to create a more secure tech space, asking technology manufacturers to be responsible and proactive in protecting the open-source package they depend on.

Read the latest

Join the conversation:

What frameworks would you consider yourself an expert in?

Give us your input
LinkedIn
X
YouTube

HeroDevs, Inc., 8850 S 700 E #2437, Sandy, UT 84070, United States, 1-877-586-1965

Unsubscribe Manage preferences