issues Search Results · language:Dune language:JavaScript language:JavaScript language:JavaScript language:PHP
Filter by
24.6M results
The section should have:
The Written Prayer (provided by the Organizer): A brief, focused prayer that the group can read in unison or the leader
can read to pivot from reading to talking.
My Silent Prayer ...
Summary
package.json pins ws ^8.20.1. A high-severity DoS vulnerability exists in ws versions below 8.21.0. The patch is a
one-line version bump.
Evidence
- package.json:79: ws : ^8.20.1
- pnpm ...
bug
dependencies
p1-high
Summary
The command allowlist validation is only enforced when storyId starts with cmd-. Sessions that do not match that prefix
bypass the allowlist entirely — body.cmd is forwarded as an arbitrary prompt ...
bug
p1-high
Check the bot to ensure everything is ok on document creation Remove the auto transform, letting people using the
options to rewrite using AI Remove for now the possibility of displaying multiple documents ...
Summary
The orchestrator spawns Claude Code with --dangerously-skip-permissions. If the orchestrator token is misused (see
#917), the spawned agent runs with no permission gates — it can delete files, ...
bug
p1-high
Summary
/api/orch-token returns the orchestrator token to any caller that can reach localhost — no auth, no origin check. Any
local process or browser tab can grab the token and impersonate the orchestrator. ...
bug
dashboard
p0-critical
Scheduled transient artifact cleanup failed.
Workflow: Cleanup Transient Artifacts Run: https://github.com/oimiragieo/agent-studio/actions/runs/28279942469
Commit: 3024dd9c8b08922bff078837e1d5a1191701f334 ...
ci
cleanup
memory
Summary
Dashboard docs and comments claim it is view-only but it is not — it can spawn orchestrator sessions and run agent
sessions from the browser. That claim is now removed; the accepted design is ...
bug
dashboard
p1-high
1. Bug
The custom error classes in backend/src/utils/errors.js do not include properties to differentiate between safe
client-facing messages and sensitive server-side debugging details. This forces the ...
backend
EFFORT: SMALL
priority:medium
security
SEVERITY: P2-MEDIUM
The field should be:
Reflection Reading (to be filled out by the organizer): A dedicated space for the modern commentary, short story, or
pastoral insight that bridges the ancient text to modern fatherhood. ...

Learn how you can use GitHub Issues to plan and track your work.
Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub IssuesProTip! Restrict your search to the title by using the in:title qualifier.