pullrequests Search Results · language:Dune language:Python language:JavaScript is:unmerged language:HTML
Filter by
40.6M results
🚨 Severity: HIGH 💡 Vulnerability: The command.html file used innerHTML to inject dynamic JSON data (from status.json
representing n.name and n.role) into the DOM. This introduces a risk of DOM-based Cross-Site ...
See Commits and Changes for more details.
Created by img src= https://prod.download/pull-18h-svg valign= bottom / pull[bot] (v2.0.0-alpha.4)
Can you help keep this open source service alive? 💖 Please ...
⤵️ pull
PR Title
fix(security): prevent SSRF attacks in dataset URL fetcher
What changed
- Added SSRF protection for dataset URL imports.
- Implemented strict URL validation allowing only http and https ...
Why
The Claude Connectors Directory submission requires the connector s advertised URLs to resolve. Two were 404ing on prod
(thumbgate.ai):
| URL | Before | After |
| --- | --- | --- |
| /docs/connectors ...
profile.py:
- KV passes the widget (self) to save_profile_field instead of self.text, so the isinstance branch binds text and
Enter-to-save no longer crashes with UnboundLocalError on the pronouns/alias ...
Bumps hypothesis from 6.152.7 to 6.155.1. details summary Release notes /summary p em Sourced from a href=
https://github.com/HypothesisWorks/hypothesis/releases hypothesis s releases /a . /em /p blockquote ...
dependencies
python:uv
Implemented Vercel Web Analytics for this static HTML project.
What was implemented:
I successfully installed and configured Vercel Web Analytics for this project following the latest official
documentation ...
Fixes 3 P0 bugs:\n\n1. db.py: default source changed from amadeus to flightapi \n2. cli.py: history command now
correctly unpacks 6 columns\n3. flightapi.py: search_roundtrip now handles 403/404/429 gracefully\n\n- ...
Motivation
- Aclarar antes de implementar backend/UI cómo debe presentarse el caso de venta con múltiples compradores para evitar
interpretaciones que dividan obligaciones financieras o muestren ...
codex