issues Search Results · language:Dune language:TypeScript language:Python language:JavaScript
Filter by
56.7M results
details summary img src= https://whitesource-resources.whitesourcesoftware.com/vulnerability_details.png width=19
height=20 Vulnerable Library - b @openclaw/googlechat-2026.2.2.tgz /b /summary
p /p p ...
Mend: dependency security vulnerability
Found by deep-review audit (apps/api).
Location: apps/api/src/routes/api-v1.ts:47-68.
Evidence: openAPIRouteHandler(apiV1Router, { documentation: { info, security, components } }) introspects the
sub-router, ...
bug
deep-review
severity:low
Found by deep-review audit (apps/api).
Location: apps/api/src/routes/api-v1.ts:31-42; apps/api/src/middleware/security-headers.ts:6-16.
Evidence: The docs page populates ul id= paths via an inline script ...
bug
deep-review
severity:low
Found by deep-review audit (registry-oci).
Location: packages/registry-oci/src/oci-uploads.ts:373-394 (assertOpenSession), :277-293 (cancelUpload); driven through
packages/registry-platform/src/content/upload-sessions.ts:85-150. ...
bug
deep-review
severity:low
Found by deep-review audit (registry-platform).
Location: packages/registry-platform/src/content/blobs.ts:87-112 (reclaimUnreferencedCasBlob/deleteUnreferencedCasBlob)
vs the grace-filtered sweep at :114-143. ...
bug
deep-review
severity:low
I have discovered a critical security vulnerability in the execute-command tool.
Vulnerability Detail: The server takes a raw string command from the user and executes it directly in the system shell ...
Found by deep-review audit (registry-platform).
Location: packages/db/src/schema/scanning.ts:52-57; packages/registry-platform/src/runtime/request-context.ts:53-120;
caller e.g. packages/registry-oci/src/oci-manifest-lifecycle.ts:69-96. ...
bug
deep-review
severity:low
Found by deep-review audit (web).
Location: apps/web/src/features/orgs/context.tsx:21-28; apps/web/src/features/tokens/pages.tsx:75-79;
apps/web/src/features/dashboard/pages.tsx:13,33.
Evidence: useRepos() ...
bug
deep-review
severity:medium
Duplicate/Conflicting FastAPI App Definitions and Endpoints
Labels: bug, reliability
Description
main.py contains multiple app = FastAPI() declarations and repeated endpoint definitions (e.g., /predict, ...
level3
nsoc26
Found by deep-review audit (web).
Location: apps/web/src/features/access/pages.tsx:123-130,234-244,665-672.
Evidence: useEffect(() = { setDraftGrants((groupPermissionsQ.data?.grants ?? []).map(...)) ...
bug
deep-review
severity:medium

Learn how you can use GitHub Issues to plan and track your work.
Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub IssuesProTip! Restrict your search to the title by using the in:title qualifier.