Skip to content

pullrequests Search Results · language:Dune language:JavaScript language:JavaScript language:TypeScript language:JavaScript

Filter by

177M results  (2 s)

177M results

🤖 Автоматический Pull Request Файл: app/components/chat/UserMessage.tsx Тип проблемы: security Серьёзность: high Что было обнаружено The sanitizeUserMessage function does not properly sanitize user ...
controller:auto-fix
priority:high

Summary This Pull Request adds a new Linked List Sorting operation to the Linked List Visualizer. The feature includes an interactive sorting visualization, educational content, code implementations in ...

概述 教师端优化:信息架构重构 + 功能闭环 + 核心发布流打磨,并附带修复一处存量类型错误。 主要改动 1. 信息架构:合并为「分身工作室」 - 原 分身管理(/teacher/avatar) + 分身上架(/teacher/publish) 职责重叠(都配置人设/风格),合并为单一 /teacher/studio(4 Tab:素材训练 / 人设风格 / 题库 / 上架预览)。 ...

Form primitives + fixes for the creator profile form pages (Personal Details, About Content, About me). sdui-runtime - date_input — form-bound date field over the new DateField (pure-JS calendar popover, ...

Closes #2136 Problem dispatch-write-phase-log upserts a per-(phase, attempt) handoff entry into an issue s !-- dispatch:phase-log -- comment. On write it picks REPLACE (section already present → update ...

Agent Runtime — operability feature pack Observability safety on top of the sandbox runtime. Dependency-free, tested. - Audit log — runs recorded; GET /api/agent-runtime/runs + dashboard Run history ...

Add SECURITY.md documenting the vulnerability reporting policy, supported versions, and scope (supply chain, CI/CD, and content injection concerns). Add Cloudflare _headers file with CSP, X-Content-Type-Options, ...

🚨 Severity: CRITICAL 💡 Vulnerability: The /api/lookup/bulk endpoint contained an SSRF (Server-Side Request Forgery) vulnerability. It performed internal API sub-requests using fetch() and dynamically derived ...

🤖 Автоматический Pull Request Файл: app/components/chat/AssistantMessage.tsx Тип проблемы: security Серьёзность: high Что было обнаружено DOM-based XSS vulnerability Что исправлено Validate and sanitize ...
controller:auto-fix
priority:high