Skip to content

Security hub

Security release intelligence

Breaking changes, CVEs, and upgrade notes across security-critical developer tools.

This week

0

KEV-cited releases

Most-cited: ART

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Are patches keeping up?

90 days

Action Required

View KEV feed
Review required
graphify v0.8.31 Mixed
RCE / SSRF

Hook script hardening + interpreter embedding

Review required
Superset desktop-v1.12.2 Mixed
Auth RBAC

desktop, terminal, billing, api, relay, projects, pty

Active KEV

All KEV

No KEV-cited releases in the current window.

High EPSS

All high EPSS

No high-EPSS release patches in the current window.

Recent CVE Patches

Review required
etcd v3.4.45 Breaking risk
Breaking upgrade

Linux, macOS, Docker update

patches CVE-2023-44487
Open
No immediate action
pastefy 7.2.2 Security relevant

Language support + OAuth fix

patches CVE-2025-31125
Open
Review required
streamlit 1.58.0 Security relevant
Auth RBAC

Breaking removals + new features

patches CVE-2023-4863
Open
Review required
ActiveMQ activemq-6.2.6 Breaking risk
Auth RBAC RCE / SSRF

Serializable package removal + hardened access

patches CVE-2016-3088 patches CVE-2016-4437 patches CVE-2021-39144 +5 more
Open
No immediate action
anything-llm v1.13.0 Security relevant

Model Router + Scheduled Jobs + Memories

patches CVE-2025-31125
Open

Security Tool Updates

Security feed
Upgrade now
doco-cd v0.90.1 Security relevant
Auth RBAC

OCI security fix

Upgrade now
mastodon v4.4.18 Security relevant
Auth RCE / SSRF

Security fixes + media description handling

Upgrade now
filebrowser v2.63.6 Security relevant
Auth RBAC

Security disclosures fixed

Review required
caddy v2.11.4 Security relevant
Auth RBAC

Security patches + deps upgrade

Response-Speed Leaderboard

No response-speed signal has been computed yet.

Supply-Chain Matrix Preview

Open matrix

Beta — feedback welcome: [email protected]