3 ms·
If you use the same Node version and NPM dependencies it could work, but trying to get the project upgraded to use a modern version of Node and mitigate vulnera
by ralmidani 3y ago
If you use the same Node version and NPM dependencies it could work, but trying to get the project upgraded to use a modern version of Node and mitigate vulnerabilities was a nightmare and I just abandoned the effort.
I get emails from Github with long lists of vulnerabilities on old toy projects where literally __zero__ dependencies are listed in package.json. It’s not so much the vulnerabilities that bother me, but the dependency conflicts, and in general a massive amount of infrastructure I have to buy into without even knowing it.