Dominic Tassio, Elizabeth Wyss, Gael Salazar-Morales, Lorenzo De Carli, Drew Davidson. Stepping out of Bounds: Security Impact of Allowing Packages on npm to Declare External Dependencies. In Drew Davidson, Sarah Evans, editors, Proceedings of the 2025 Workshop on Software Supply Chain Offensive Research and Ecosystem Defenses, SCORED 2025, Taipei,Taiwan, October 13-17, 2025. pages 17-25, ACM, 2025. [doi]
Abstract is missing.