issues Search Results · language:Edge language:Python language:PHP language:JavaScript language:JavaScript linked:pr
Filter by
4.8M results
Why
The real owner/self pilot is waiting on Day 1. The prompt is now visible in JSON and HTML, but a learner who is stuck
still has to invent a sentence from scratch. The next-card surface should offer ...
area:conversation-ux
area:evaluation
decision:continue
type:feature
Summary
CodeQL reports 1 open py/reflective-xss alert in backend/routes/timeseries_meta.py. A user-provided value is reflected
directly in a response without HTML-encoding, allowing a cross-site scripting ...
Your Full Name
VISWAS KASI
GitHub Username
VISWAS KASI
Email Address
viswaskasi2006@gmail.com
T-Shirt Size (For Random Winners)
L
Pull Request Link
https://github.com/nisalgunawardhana/api-learning-101/pull/601 ...
pending review
submission
T-Shirt: L
Long extraction runs on the claude-cli backend get cut off at exactly ten minutes, and there s no way to raise the
ceiling. Setting GRAPHIFY_API_TIMEOUT or passing --api-timeout has no effect on a claude-cli ...
Summary
CodeQL reports 1 open js/client-side-request-forgery (SSRF) alert in frontend/src/api.ts. The URL of a fetch/axios
request is constructed from a user-provided value, which could allow an attacker ...
Summary
CodeQL reports 2 open py/log-injection alerts in core backend modules. Log entries include user-provided values without
sanitisation.
Affected files and alerts
- backend/common/data_loader.py ...
Summary
CodeQL reports 9 open py/log-injection alerts across four timeseries fetcher modules. Log entries include user-provided
values (ticker symbols, URLs, etc.) without sanitisation.
Affected files ...
Summary
CodeQL reports 7 open py/log-injection alerts in backend/common/approvals.py. Log entries include user-provided values
without sanitisation.
Affected alerts
Code scanning alerts: #61, #63, #64, ...
Summary
CodeQL reports 8 open py/log-injection alerts across the compliance-related backend modules. Log entries include
user-provided values without sanitisation.
Affected files and alerts
- backend/common/compliance.py ...
Summary
CodeQL reports 11 open py/log-injection alerts in backend/timeseries/cache.py. Log entries include user-provided values
without sanitisation, which allows an attacker to forge log entries or inject ...

Learn how you can use GitHub Issues to plan and track your work.
Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub IssuesProTip! Restrict your search to the title by using the in:title qualifier.