issues Search Results · language:Edge language:Python language:JavaScript language:JavaScript language:HTML language:CSS
Filter by
32.5M results
Problem\nPromotion, demotion, and kick/removal recommendations stopped appearing even though live candidate data still contains inactive members and role-review candidates.\n\n## Evidence\n- leadership_action_scan ...
Automated whitespace suggestion.
Change
In docs/guides/tables-and-views.md, MERGE the two separate file-inference subsections into ONE. There is no reason to
give JSON its own section — --from-parquet, --from-csv, and --from-json are ...
documentation
Change
Remove the entire ** Limitations gotchas ** section from docs/guides/dbt-setup.md. Its five bullets (Entra-ID-only, MARS
not supported, reduced T-SQL surface area, unsupported data types, transient ...
documentation
🔴 CRITICAL 安全漏洞
审计者: 哈尼斯 (独立第三方审计) 发现日期: 2026-06-21 位置: mortis/vault/local.py:discard_sub_output()
描述
直接 (self.root / rel_path).unlink(),无路径边界检查。
攻击验证
v.discard_sub_output( /tmp/mortis_target.txt ...
audit-finding
bug
security
🔴 CRITICAL 安全漏洞
审计者: 哈尼斯 (独立第三方审计) 发现日期: 2026-06-21 位置: mortis/vault/base.py:VaultSecurity.check_whitelist()
描述
使用 startswith() 检查路径前缀,未归一化路径。../ 可绕过。
攻击验证
❌ 通过: mortis-journal/sub-outputs/../../private/secret.md ...
audit-finding
bug
security
🔴 CRITICAL 安全漏洞
审计者: 哈尼斯 (独立第三方审计) 发现日期: 2026-06-21 位置: mortis/vault/local.py:write()
描述
Vault.write() 直接拼接 self.root / rel_path,未做路径归一化或边界检查。攻击者(或越界 sub)可写任意文件到系统。
攻击验证
v.write( /tmp/hack.txt , ...
audit-finding
bug
security
Scene: Dock_08 Position: (24.620994567871094, 21.567684173583984)
Message: sceneName: Dock_08 x: 24.62099 y: 21.56768 message: mstwaaaaa
Meta
- GameVersion: undefined
- Platform: 76561198743436751 ...
feedback
processed
This is the details you need to know.

Learn how you can use GitHub Issues to plan and track your work.
Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub IssuesProTip! Restrict your search to the title by using the in:title qualifier.