Policy dependency / Stack layer
SGLang Hit With Unauthenticated Pickle RCE via /update_weights_from_tensor, the Fourth Critical Inference-Stack CVE in Four Weeks
CERT Coordination Center
Policy dependency / Stack layer
git-ai is a Git extension that tracks which code in your repo was AI-generated, at 140 open PRs to 71 issues
GitHub Trending
Stack layer / Threat pattern
Snyk put its agent-skill scanner behind a free web page called Skill Inspector
Snyk Labs
Policy dependency / Stack layer
Pattern: four coding-agent CLIs shipped sandbox or trust work in the same week
GitHub
Stack layer / Contrast
Alibaba's open-code-review shipped v1.12.1 today and claims 4.7x the precision of Claude Code at a fourteenth of the tokens
GitHub Trending
Stack layer / Threat pattern
tech-leads-club/agent-skills is a validated skill registry pitched on security rather than on breadth
GitHub Trending
Stack layer / Threat pattern
Claude Code 2.1.270 walks back a permission regression the previous day's security release introduced
GitHub
Policy dependency / Stack layer
Agent Framework stops forwarding headers across redirects and revalidates file skill paths before use
GitHub