DANCE→NAV
760 posts

DANCE→NAV
@dancenav
Navigate dance events with ease. Find the next dance. https://t.co/GWYUfRLtDR
Katılım Aralık 2020
272 Takip Edilen55 Takipçiler

Hey, npm? You there? It’s time to wake up and do literally anything at all about this
Socket@SocketSecurity
UPDATE: So far we've identified 639 compromised npm package versions across 323 unique packages in tonight’s Mini Shai-Hulud wave. That includes 558 versions across 279 unique @antv packages. Most were detected within ~6 minutes of publication. socket.dev/blog/antv-pack…
English

@MarieIsabellaB “What kind of sandwich would you like, Kowalski?”
“MEAT!!!!!!!”
“And what kind of bread would you like Kowalski?”
“MEAT!!!!!!!!!!”
English

If you're a millennial it's time to pick your midlife crisis:
1. Quitting alcohol
2. Running 10 miles before work
3. Divorce
4. Panic baby at 35 with wife you hate
5. Pickleball
6. ADHD diagnosis
7. Dressing like you did in 2004
8. Blacking out every weekend like you’re 21
9. Weekly hinge dates
10. Ice baths and saunas
11. Board games and craft beer in the suburbs
12. Getting into tattoos
13. Quitting your job to explore your “passions”
14. Plants and the environment
15. Traveling
English

@0xPrajwal_ AI makes mistakes sometimes. Someone who knows code has to supervise AI.
English

@HumansNoContext On one hand, no one will steal it. On the other hand, someone might throw it out by accident..
English

@modat_magnify Another one? Jesus Christ. HTMX rewrite coming soon…
English

CVE-2026-44578
⚠️ Next.js – WebSocket Upgrade SSRF (CVSS 8.6)
A server-side request forgery vulnerability in Next.js allows unauthenticated attackers to force self-hosted instances to make internal HTTP requests via the WebSocket upgrade handler.
By sending a crafted absolute-form HTTP request with Upgrade: websocket headers, attackers can access internal services, cloud metadata endpoints, admin panels, and internal APIs reachable from the Next.js server on port 80. Successful exploitation may expose cloud credentials, API keys, secrets, and configuration data.
Affected: Next.js 13.4.13+, 14.x, 15.x <15.5.16, 16.0.0–16.2.4
Mitigation: Upgrade immediately to 15.5.16 or 16.2.5.
Modat Magnify Query:
technology="Next.js"
The platform:
magnify.modat.io
#threatintel #vulnerability #CVE202644578 #Nextjs #SSRF #WebSocket #CloudSecurity #infosec #Critical #ModatMagnify

English

@ashirwadsingh_ @ptr_to_joel Can almost guarantee AI is going to review it.
English

@Surendar__05 It depends. What kind of phone are you using? Do you rely on Find My to keep track of your stuff? Is Apple-only or Apple/Windows only software part of your daily work?
English

@tuuu28283 Hawaii and New York are basically different countries, and O’ahu is different from Big and Maui just as NYC is different from Upstate New York.
English

@GameStalgiaX There are way, WAY too many good games from that decade to decide on only one. Way too fucking many.
But The Legend of Zelda: A Link to the Past pretty much set the standard for decades to come.
English






















