Security npm Package Lottie-Player Compromised in Supply Chain AttackFebruary 27, 2026 A targeted supply chain attack involving the widely used npm package @lottiefiles/lottie-player has been uncovered, highlighting vulnerabilities in software dependencies.…