Featured Posts
All Posts
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
.png)
Press Release
Oct 29, 2024
HeroDevs and Mend.io Join Forces to Streamline Vulnerability Remediation for Open Source Software
HeroDevs and Mend.io Partner to Deliver Seamless Vulnerability Scanning and Remediation for End-of-Life Open-Source Software, Bridging the Gap Between Detection and Resolution in a Single Workflow.
HeroDevs
herodevs.com/blog-posts/
herodevs-and-mend-io-join-forces-to-streamline-vulnerability-remediation-for-open-source-software
.png)
Products
Oct 24, 2024
Official Support for ESLint v8.x Has Ended — Ensure Ongoing Security with HeroDevs' Never-Ending Support
Extend the life of your ESLint applications
HeroDevs
herodevs.com/blog-posts/
official-support-for-eslint-v8-x-has-ended----ensure-ongoing-security-with-herodevs-never-ending-support

Security
Oct 23, 2024
CVE-2024-38820: DataBinder Case Sensitive Match Exception Vulnerability in Spring Framework
Addressing the CVE-2024-38820 vulnerability in Spring Framework’s DataBinder, HeroDevs offers long-term security with Spring NES for legacy versions."
HeroDevs
herodevs.com/blog-posts/
cve-2024-38820-databinder-case-sensitive-match-exception-vulnerability-in-spring-framework
.png)
Thought Leadership
Oct 18, 2024
How the 2023 Time-to-Exploit Trends Reinforce the Need for Proactive Vulnerability Management
2023: The Year Zero-Day Exploits Surged and How HeroDevs’ Pre-emptive Patching Keeps Businesses Ahead of Threats
Hayden Baillio
herodevs.com/blog-posts/
how-the-2023-time-to-exploit-trends-reinforce-the-need-for-proactive-vulnerability-management

Security
Oct 15, 2024
CVE-2024-9506: Vue 2 ReDoS Vulnerability Details and Mitigation
Explore how to manage end-of-life open-source software with proactive strategies for security, compliance, and long-term support, without immediate migration.
HeroDevs
herodevs.com/blog-posts/
cve-2024-9506-vue-2-redos-vulnerability-details-and-mitigation
.png)
Thought Leadership
Oct 10, 2024
Migration vs. Long-Term Support: Which is the Right Choice for Your Business?
Migration vs. Long-Term Support: Choosing the Best Path for Your Business
Parin Shah
herodevs.com/blog-posts/
migration-vs-long-term-support-which-is-the-right-choice-for-your-business
.png)
Security
Oct 8, 2024
HeroDevs Security Advisories: Enhancing Your Software Security Beyond CVEs
HeroDevs Security Advisories focus on resolving dependency issues that impact your software's security
HeroDevs
herodevs.com/blog-posts/
herodevs-security-advisories-enhancing-your-software-security-beyond-cves
.png)
Security
Oct 3, 2024
CVE-2024-9266: Open Redirect Vulnerability in Express 3.x
CVE-2024-9266: Open Redirect Vulnerability Discovered in Express 3.x – Mitigation Available
HeroDevs
herodevs.com/blog-posts/
cve-2024-9266-open-redirect-vulnerability-in-express-3-x

Products
Oct 1, 2024
Introducing Express.js NES to HeroDevs' Never-Ending Support Initiative
With Express NES, HeroDevs ensures long-term support for legacy Express.js applications, offering ongoing security, compatibility, and regulatory compliance for SOC2, FedRAMP, HIPAA, and more.
HeroDevs
herodevs.com/blog-posts/
introducing-express-js-nes-to-herodevs-never-ending-support-initiative

Products
Oct 1, 2024
HeroDevs Launches Express NES as Part of Ecosystem Sustainability Program
Introducing Express NES: Long-term support for legacy Express.js, providing security and compliance for mission-critical applications.
HeroDevs
herodevs.com/blog-posts/
herodevs-launches-express-nes-as-part-of-ecosystem-sustainability-program
.png)
Press Release
Sep 30, 2024
HeroDevs Joins the Open Source Pledge: Supporting the Future of OpenJS and Beyond
HeroDevs invests $144,000 in open-source projects, supporting innovation and sustainability through contributions to the OpenJS Foundation and more.
HeroDevs
herodevs.com/blog-posts/
herodevs-joins-the-oss-pledge-supporting-the-future-of-openjs-and-beyond
.png)
Security
Sep 30, 2024
CVE-2024-38807: Spring Boot Signature Forgery Vulnerability
Spring Boot Signature Forgery Vulnerability in Nested Jar Verification
HeroDevs
herodevs.com/blog-posts/
cve-2024-38807-spring-boot-signature-forgery-vulnerability
.png)
Press Release
Sep 27, 2024
HeroDevs Achieves SOC 2 Type 1 Certification: Elevating Security and Compliance for Legacy Open Source Support
HeroDevs Achieves SOC 2 Type 1 Certification, Strengthening Security and Compliance for Legacy Open Source Systems
HeroDevs
herodevs.com/blog-posts/
herodevs-achieves-soc-2-type-1-certification-elevating-security-and-compliance-for-legacy-open-source-support
.png)
Security
Sep 24, 2024
High and Medium CVEs in Spring 4.3.x: Why Your Business is at Risk and How to Protect It
Stay ahead of security risks—learn about Spring 4.3.x vulnerabilities and the critical steps to safeguard your systems.
HeroDevs
herodevs.com/blog-posts/
high-and-medium-cves-in-spring-4-3-x-why-your-business-is-at-risk-and-how-to-protect-it-2

Press Release
Sep 19, 2024
HeroDevs Joins OpenSSF to Enhance Open Source Software Security Sustainability
HeroDevs joins the Linux Foundation’s Open Source Security Foundation to further enhance the security and sustainability of deprecated open source software.
HeroDevs
herodevs.com/blog-posts/
herodevs-joins-openssf-to-enhance-open-source-software-security-sustainability