Skip to content

issues Search Results · language:Edge language:TypeScript language:PHP language:Python language:Python language:JavaScript

Filter by

61.8M results  (835 ms)

61.8M results

The offline sync queue trusts data residing in IndexedDB without cryptographic signing. A local script injected via a separate XSS vulnerability can alter the queued actions, which the app will blindly ...

Found On md-bridge, C1 (test_line_breaks.py, test_themes_api.py) and C21 (test_language_detection.py) fired on for x in STANZA: assert ... / for _, lang in SAMPLES: assert .... STANZA and SAMPLES are ...
criticality:low
enhancement
P3
scanner

When a database query fails, the endpoint returns the raw stack trace and SQL query in the JSON response, exposing the internal database schema and underlying technologies to attackers.

Fix issues from manual testing

Found On md-bridge, C8 fired on assert mod.mono_ratio(block) == 1.0 and == 0.0 (test_heuristics.py). Those values are exactly representable in float and are common exact sentinels (0/N = 0.0, N/N = 1.0). ...
criticality:low
enhancement
P3
scanner

The user update endpoint spreads req.body directly into the database update query. An attacker can include roles : [ ADMIN ] in their payload to silently grant themselves administrative privileges.

I use Aperture on a vertical monitor. This means my horizontal space is limited. When I try to set a signature type the select box appears too thin to use. img width= 607 height= 389 alt= Image src= https://github.com/user-attachments/assets/895bed4c-2b10-487f-bdc1-4be29d5326ae ...

The Pandoc Extended Markdown plugin allows nicer control of superscript and subscript: - 2^10^ - H~2~O - OD~600~ published with quartz-syncer img width= 91 height= 57 alt= Image src= https://github.com/user-attachments/assets/d1b56565-2f66-44d3-afdc-24649f5a5952 ...

The file upload API does not enforce a strict file size limit before streaming the payload into memory, allowing an attacker to send a multi-gigabyte payload and exhaust server RAM.

Phase 2 of the #530 housekeeping wave (Phase 1 / contract complete in #540). Behaviour-preserving, MEANING-preserving doc cleanup for feature rabbit-auto-evolve . Scope (feature rabbit-auto-evolve only, ...
enhancement
feature:rabbit-auto-evolve
housekeeping
priority:medium
rabbit-managed
Issue origami icon

Learn how you can use GitHub Issues to plan and track your work.

Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub Issues
ProTip! Restrict your search to the title by using the in:title qualifier.
Issue origami icon

Learn how you can use GitHub Issues to plan and track your work.

Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub Issues
ProTip! Restrict your search to the title by using the in:title qualifier.