16

Keep Third Party Dependencies Up-to-date!

Depending on your project, use one of these CLI commands to check for outdated dependencies:

$ npm audit 
$ govulncheck ./... 
$ cargo audit
#App Security #Dependency Management

You’ve likely heard of the wide-spread log4j vulnerability, but many of your other dependencies might also contain known vulnerabilities which could weaken your application security.

Use your dependency managers to list known vulnerabilities for your dependencies and then determine how they affect you:

  • go: govulncheck
  • rust: cargo audit
  • nodejs/npm: npm audit

Don’t forget to have your dependencies audited too!

Icon with a waving hand

Get in touch

sigma star gmbh
Eduard-Bodem-Gasse 6, 1st floor
6020 Innsbruck | Austria

sigma star gmbh logo