Luigi Gubello
Luigi Gubello
### What happened? Logseq Desktop app 0.7.9 (`5e2487c6d84840780fb83ae518d34cac885d7026`) is vulnerable to cross-site scripting (arbitrary Javascript injection), which could lead to remote code execution via `shell.openExternal`. It is possible to inject...
How can I report a vulnerability without disclosing it publicly in a GH issue? Best, Luigi
How can I report a vulnerability without disclosing it publicly in a GH issue? Best, Luigi
I know that it may be a trivial question, but what do we mean by "undisclosed security vulnerability"? Do we mean that the vulnerability has no a CVE ID and...
**Is your feature request related to a problem? Please describe.** In the open-source ecosystem, developers can share the code on different platforms (GitHub, Bitbucket, self-hosted, etc), and they have various...
Hi :wave: as a project in the working group "[Identifying Security Threats](https://openssf.slack.com/archives/C01A50B978T)", we are working on the [SECURITY-INSIGHTS.yml specification](https://github.com/ossf/security-insights-spec). SECURITY INSIGHTS would like to provide information regarding security posture and...
Hi :wave: as a project in the working group "[Identifying Security Threats](https://openssf.slack.com/archives/C01A50B978T)", we are working on the [SECURITY-INSIGHTS.yml specification](https://github.com/ossf/security-insights-spec). SECURITY INSIGHTS would like to provide information regarding security posture and...
Hi :wave: as a project in the working group "[Identifying Security Threats](https://openssf.slack.com/archives/C01A50B978T)", we are working on the [SECURITY-INSIGHTS.yml specification](https://github.com/ossf/security-insights-spec). SECURITY INSIGHTS would like to provide information regarding security posture and...
Hi :wave: as a project in the working group "[Identifying Security Threats](https://openssf.slack.com/archives/C01A50B978T)", we are working on the [SECURITY-INSIGHTS.yml specification](https://github.com/ossf/security-insights-spec). SECURITY INSIGHTS would like to provide information regarding security posture and...
The flags `--user`, `--ulang` and `--tlang` break the script. **Error:** ``` File "tweets_analysis.py", line 257, in create_hist_account_creations month_year_extended = pd.date_range(datetime(min_year, 1, 1), datetime(max_year, 12, 31), freq='MS') TypeError: integer argument expected,...