Ulises Gascón (@kom_256) 's Twitter Profile
Ulises Gascón

@kom_256

#OpenSource Maintainer (@nodejs, @UseExpressJS...), @TC39 Delegate and #Maker | He/Him

ID: 1029222468

linkhttps://ulisesgascon.com/ calendar_today22-12-2012 20:41:53

9,9K Tweet

5,5K Followers

1,1K Following

Ulises Gascón (@kom_256) 's Twitter Profile Photo

We’re modernizing ExpressJS by deprecating legacy packages that no longer fit the framework’s direction: 🔥 csurf 🔥 connect-multiparty 🔥 path-match Why? Less tech debt, better security, smoother future. expressjs.com/2025/05/16/exp…

Drew Jaynes (@drewapicture) 's Twitter Profile Photo

Ulises is over here greasing the wheels of a lot of open source packages and is just 10 sponsors short of their monthly goal! I'm now sponsor #5, who will join me in support of Ulises continuing this much needed work?

Rafael Gonzaga (@_rafaelgss) 's Twitter Profile Photo

I will be live in 40 minutes doing another Node.js core session. Join me! rafaelgss on twitch and _rafaelgss on youtube 💚

Ulises Gascón (@kom_256) 's Twitter Profile Photo

🔐 Is it a vulnerability, or just a misunderstood feature? At Node Congress🔥April 17 & 18, 2025 2025, I broke it down in my talk: "What is a Vulnerability and What’s Not" Topics: 👉 Real vs. imagined risks in Node.js and ExpressJS 👉 Why #threatModels matter 🎥 Watch: gitnation.com/contents/what-…

Ulises Gascón (@kom_256) 's Twitter Profile Photo

🔐 [email protected] is out with critical security fixes: • CVE-2025-47935 – DoS via memory leak from unclosed streams • CVE-2025-47944 – DoS via crash from malformed multipart requests • Dropped support for Node <10.16.0 Upgrade now → github.com/expressjs/mult…

Ulises Gascón (@kom_256) 's Twitter Profile Photo

🚨 Heads up: [email protected] is now deprecated. A bunch of vulns were patched in 2.x — if you're still on 1.x, it's time to move. npm i multer@latest Stay safe out there 🫡 expressjs.com/2025/05/19/sec…

Ulises Gascón (@kom_256) 's Twitter Profile Photo

🚂💨 The ExpressJS train is rolling this summer with 30+ libraries getting updates! From cors to morgan, cookie, multer, compress and more. it's the perfect time to get involved. Help us triage and shape the future: github.com/expressjs/disc…

OpenJS Foundation (@openjsf) 's Twitter Profile Photo

🚨 OpenJS is now a CVE Numbering Authority! We can assign CVEs for security bugs in our projects, helping keep the JavaScript ecosystem safer. Backed by Alpha-Omega, our disclosure process just got smoother. 😎🚀 Details: hubs.la/Q03pvT_70

Ulises Gascón (@kom_256) 's Twitter Profile Photo

🚨 High-severity security fix in [email protected] just released! - Patches CVE-2025-48997 — a crash triggered by empty field names in multipart uploads - All users should upgrade immediately: npm i multer@latest github.com/expressjs/mult…

Ulises Gascón (@kom_256) 's Twitter Profile Photo

📚 ¡El gran libro de #Nodejs está en la #FeriadelLibroMadrid! 📍 #Caseta365 – ARTCOMBO / SENTIR / MARCOMBO 🗓️ Hasta el 15 de junio 🔖 10% de descuento Una guía moderna para dominar #Nodejs desde cero. ¡Pásate! 🚀

📚 ¡El gran libro de #Nodejs está en la #FeriadelLibroMadrid!

📍 #Caseta365 – ARTCOMBO / SENTIR / MARCOMBO
🗓️ Hasta el 15 de junio
🔖 10% de descuento

Una guía moderna para dominar #Nodejs desde cero.

¡Pásate! 🚀
Node Congress🔥April 17 & 18, 2025 (@nodecongress) 's Twitter Profile Photo

Just attended a fascinating talk by Ulises Gascón on #Node.js and #Express threat models. A must-watch for developers and security researchers! gitnation.com/contents/what-…

Ulises Gascón (@kom_256) 's Twitter Profile Photo

🔐 We've overhauled how ExpressJS handles vulnerability reports! New unified policies, GitHub Security Advisories, and a clear workflow—backed by the #SovereignTechFund & OpenJS Foundation. expressjs.com/2025/06/05/vul…

Ulises Gascón (@kom_256) 's Twitter Profile Photo

🚩 Keep up to date with Node.js by watching the #Nodejs Security Working Group's last meeting on YouTube! youtube.com/watch?v=x0KMcm…

Ulises Gascón (@kom_256) 's Twitter Profile Photo

What started as a #POC is now featured on the official OpenJS Foundation Security page! 🎉 🚀 #OpenPathFinder helps #JavaScript & #NodeJS projects automate security & compliance — and I’m working on exciting updates for [email protected]! openjsf.org/security

Ulises Gascón (@kom_256) 's Twitter Profile Photo

😱 My book Node.js for Beginners is part of the Humble Bundle + Packt Publishing Modern Back-End Web Dev bundle — but it's ending soon! ⏳ Just 1 day left! 📚 Learn Node.js, Python, Go & more. Support charity while you skill up! humblebundle.com/books/modern-b…