Combined changes across v2.42.1 → v2.42.2 (2 releases)
Security release intelligence
for the open-source you actually depend on
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
AI Summaries
What changed and which changes matter for your security posture — in 10 seconds.
Critical Fix Alerts
When a critical CVE fix ships for a tool you track, you find out the same day — including downstream dependency exposure.
Supply-Chain Visibility
SBOM-derived transitive CVE exposure, per-tool security pages, and shared-risk clusters across the catalog. See the supply-chain map →
Breaking This Week
High-severity changes from the past 7 days
Confluence Data Center and Server are removed; converter supports only Confluence Cloud using ADF.
Fixed path traversal in Log Viewer and patched multiple security vulnerabilities.
AGENT_SECRET environment variable is now mandatory.
Latest Releases
Showing recent releases across all tools — sign in to see releases for your stack.
Combined changes across langchain-quickjs==0.2.0 → langchain-vercel-sandbox==0.0.1 (2 releases)
BREAKING CHANGES
- Removed `skills_backend` module.
- Added default `subagent` bridge (observable change in runtime configuration).
NOTABLE FEATURES
- Add Vercel Sandbox provider
Browse by Category
Find tools for your workflow
Trending Now
Most-tracked tools this week
Explore Feeds
Subscribe by topic — track all tools at once
Community Lists
Curated collections from the community
AI-POWERED · WEEKLY
Weekly Supply Chain Security Brief
Breaking changes, security patches, and CVEs — curated weekly for your stack.