Policy dependency / Stack layer
Weaviate v1.39.2 makes its MCP server stateless and refuses GET with a 405
GitHub
Policy dependency / Stack layer
Agno 3.0.1 caches tool schemas across runs and loads session history incrementally, so response time stops scaling with conversation length
GitHub (agno-agi/agno)
Stack layer / Threat pattern
claude-mem v13.16.1 fixes a Windows process-tree leak that wedged port 37777 under dead PIDs
GitHub
Policy dependency / Stack layer
Cherry Studio v2.0.9 unifies tool approval into one declarative policy and lets the provider catalog hot-update without an app release
GitHub
Stack layer / Threat pattern
browser-use/browser-harness v0.1.10 is a pure agent-security release: CDP credentials redacted from logs and orchestrator daemons now fail closed
GitHub
Stack layer / Threat pattern
HolmesGPT 0.40.0 is almost entirely a security release: command injection across five toolsets, SSRF, and signed bash approval prefixes
GitHub
Stack layer / Threat pattern
Chainlit's MCP endpoint gives unauthenticated RCE when enabled, because the allowlist checks the executable and ignores the arguments
GitHub Advisory Database
Stack layer / Threat pattern
Cline Redacts Credentials Embedded in Git Remote URLs Before Sending Workspace Info to the Model
GitHub