Security npm Package Lottie-Player Compromised in Supply Chain AttackDecember 30, 2024 A targeted supply chain attack involving the widely used npm package @lottiefiles/lottie-player has been uncovered, highlighting vulnerabilities in software dependencies.…