Skip to content

Conversation

delyriand
Copy link

cf https://sansec.io/research/polyfill-supply-chain-attack

Summary

As explain in the https://sansec.io/research/polyfill-supply-chain-attack, the Polyfill JS contains a malicious script.
And, like IE 9 and below, are very rarely used now:

image
Source: https://www.w3counter.com/trends

I suggest deleting the polyfill addition in layout

Result

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant