pullrequests Search Results · language:Dune language:JavaScript language:JavaScript language:TypeScript language:JavaScript
Filter by
177M results
🤖 Автоматический Pull Request
Файл: app/components/chat/UserMessage.tsx
Тип проблемы: security
Серьёзность: high
Что было обнаружено
The sanitizeUserMessage function does not properly sanitize user ...
controller:auto-fix
priority:high
Summary
This Pull Request adds a new Linked List Sorting operation to the Linked List Visualizer. The feature includes an
interactive sorting visualization, educational content, code implementations in ...
概述
教师端优化:信息架构重构 + 功能闭环 + 核心发布流打磨,并附带修复一处存量类型错误。
主要改动
1. 信息架构:合并为「分身工作室」
- 原 分身管理(/teacher/avatar) + 分身上架(/teacher/publish) 职责重叠(都配置人设/风格),合并为单一 /teacher/studio(4 Tab:素材训练 / 人设风格 / 题库 /
上架预览)。 ...
Form primitives + fixes for the creator profile form pages (Personal Details, About Content, About me).
sdui-runtime
- date_input — form-bound date field over the new DateField (pure-JS calendar popover, ...
Closes #2136
Problem
dispatch-write-phase-log upserts a per-(phase, attempt) handoff entry into an issue s !-- dispatch:phase-log -- comment.
On write it picks REPLACE (section already present → update ...
Agent Runtime — operability feature pack
Observability safety on top of the sandbox runtime. Dependency-free, tested.
- Audit log — runs recorded; GET /api/agent-runtime/runs + dashboard Run history ...
Add SECURITY.md documenting the vulnerability reporting policy, supported versions, and scope (supply chain, CI/CD, and
content injection concerns). Add Cloudflare _headers file with CSP, X-Content-Type-Options, ...
🚨 Severity: CRITICAL 💡 Vulnerability: The /api/lookup/bulk endpoint contained an SSRF (Server-Side Request Forgery)
vulnerability. It performed internal API sub-requests using fetch() and dynamically derived ...
🤖 Автоматический Pull Request
Файл: app/components/chat/AssistantMessage.tsx
Тип проблемы: security
Серьёзность: high
Что было обнаружено
DOM-based XSS vulnerability
Что исправлено
Validate and sanitize ...
controller:auto-fix
priority:high