UltraJSON's architecture is fundamentally ill-suited to making changes without risk of introducing new security vulnerabilities. As a result, this library has been put into a maintenance-only mode.
Attackers stole a long-lived npm token from the lead axios maintainer and published two poisoned versions that drop a ...