pullrequests Search Results · language:Dune language:TypeScript language:JavaScript language:JavaScript is:merged language:Python
Filter by
136M results
- update changelog for release
- bump version to next patch level for nightly releases
- commit changes to resource_hash_table.json
문제
강의 상세에서 첨부파일(이미지 등) 다운로드 버튼을 눌러도 다운로드되지 않고 브라우저에서 인라인으로 열림.
원인
첨부 링크가 a href={att.url} download 인데, att.url은 Supabase Storage(cross-origin) URL. HTML download 속성은 cross-origin URL에서
브라우저가 무시한다(특히 ...
Summary
- Harden SVG sanitizer: block control-char obfuscated javascript: URIs, block feImage SSRF, expand test suite to 32
bypass payloads
- Fix rate limiting: add per-route limits on tool (60/min) ...
The iOS memory soft-reset reloads the page mid-workout to free media memory, then auto-reopens Play Mode for the workout
the client was in. The reload URL omitted the selected date, so the post-reload ...
See Commits and Changes for more details.
Created by img src= https://prod.download/pull-18h-svg valign= bottom / pull[bot] (v2.0.0-alpha.4)
Can you help keep this open source service alive? 💖 Please ...
⤵️ pull