Sources
Datasette ships security releases after an audit with Fable 5.1, GPT-5.6 and GPT-6 Astra found 'very subtle' permission bugs
Simon Willison released Datasette 1.0a39 and 0.65.4 on 2026-09-10. They fix bugs found in an audit run with three frontier models together with Sevban Dönmez and Alex Garcia, working in pairs: one person wrote a failing test, the other wrote the fix. The changelog lists the fixes. Permission checks ignored SQLite's case-insensitive table names. FTS index tables and sqlite_stat tables were readable without permission. Column names from untrusted schemas were not escaped in SQL or HTML. Private responses carried caching headers that allowed caching. Restricted actors could create API tokens. Anyone running Datasette publicly with a mix of public and private tables should upgrade.
↳ Follow the thread