See the full list of npm packages compromised in the "SHA1-Hulud npm supply chain incident – Nov 2025" [View compromised packages].
onigiri-press vulnerabilities
A modern, lightweight portfolio and blog framework built with React, TypeScript, and Vite. Easy to customize, supports markdown content, and includes powerful blog functionality.