DejaVue

Secure your Vue and Nuxt applications (with Jakub Andrzejewski)


Listen Later

Security is a topic that is often overlooked in the frontend world. But at least for you all - no longer! To make sure we cover Security for Vue and Nuxt applications as broad as possible, Michael and Alex are joined by Jakub Andrzejewski, who is not only a Senior Frontend Developer but also author of the Nuxt Security Module. We cover not only the module but also how to avoid common security mistakes as a Vue developer and how to protect your applications from vulnerabilities, and which are the most common ones.


Of course, we can't miss out on the State of Vue.js Survey, which is currently running and was co-created by Jakub as well!


Besides talking about the Security and the State of Vue.js, we also discuss how Jakub got into Vue.js at first and how he perceived the transition to Vue 3 and the Composition API.


Enjoy the episode!

Our Guest

Jakub Andrzejewski

  • Blog
  • Bluesky
  • Twitter


Chapters

  • (00:00) - Welcome to the DejaVue Podcast
  • (00:12) - Introducing our Guest
  • (02:07) - The Nuxt Ecosystem Team
  • (07:47) - How did you get into Vue.js
  • (13:09) - Transition to Vue 3 and Composition API
  • (17:00) - React Livecoding as a Vue Dev
  • (18:10) - vue-vine for multiple components
  • (20:34) - State of Vue
  • (30:30) - The Nuxt Security Module
  • (37:36) - Will the module project you from everything?
  • (41:59) - The ShipFast incident
  • (45:05) - Ethical Hacking and NPM Security Vulnerabilities
  • (49:24) - Privilege Escalation at Shopify
  • (51:45) - Nuxt Security without a Server
  • (54:28) - More Logic in the Frontend
  • (55:38) - Nothing to Hide?
  • (57:28) - Security Mistakes to Avoid as a Vue Developer
  • (01:02:13) - Wrapping up

  • Links and Resources


    • Fill out the State of Vue.js Survey
    • And also the State of JS Survey 🙌


    • Nuxt Security Module
    • Vue Vine
    • State of Frontend (Results out)
    • OWASP Top 10
    • DejaVue #E006 - Nuxt Server Components (with Julien Huang)
    • Shipfast incident writeup



    Your Hosts

    Alexander Lichter

    • Twitter
    • YouTube
    • Website


    Michael Thiessen

    • Twitter
    • YouTube
    • Website


    ---

    Links marked with * are affiliate links. We get a small commission when you register for the service through our link. This helps us to keep the podcast running. We only include affiliate links for services mentioned in the episode or that we use ourselves.

    ...more
    View all episodesView all episodes
    Download on the App Store

    DejaVueBy Alexander Lichter & Michael Thiessen


    More shows like DejaVue

    View all
    Hanselminutes with Scott Hanselman by Scott Hanselman

    Hanselminutes with Scott Hanselman

    377 Listeners

    .NET Rocks! by Carl Franklin and Richard Campbell

    .NET Rocks!

    244 Listeners

    The Changelog: Software Development, Open Source by Changelog Media

    The Changelog: Software Development, Open Source

    284 Listeners

    Startups For the Rest of Us by Rob Walling

    Startups For the Rest of Us

    696 Listeners

    The Vergecast by The Verge

    The Vergecast

    3,672 Listeners

    Accidental Tech Podcast by Marco Arment, Casey Liss, John Siracusa

    Accidental Tech Podcast

    2,092 Listeners

    Thoughtworks Technology Podcast by Thoughtworks

    Thoughtworks Technology Podcast

    40 Listeners

    Talk Python To Me by Michael Kennedy

    Talk Python To Me

    590 Listeners

    Software Engineering Daily by Software Engineering Daily

    Software Engineering Daily

    621 Listeners

    Soft Skills Engineering by Jamison Dance and Dave Smith

    Soft Skills Engineering

    269 Listeners

    Syntax - Tasty Web Development Treats by Wes Bos & Scott Tolinski - Full Stack JavaScript Web Developers

    Syntax - Tasty Web Development Treats

    987 Listeners

    Darknet Diaries by Jack Rhysider

    Darknet Diaries

    7,879 Listeners

    The Stack Overflow Podcast by The Stack Overflow Podcast

    The Stack Overflow Podcast

    62 Listeners

    The Real Python Podcast by Real Python

    The Real Python Podcast

    139 Listeners

    Chatabix by Keep It Light Media / Big Oval Plate

    Chatabix

    200 Listeners