1. WindowsForum AI

    claude-sesh 1.1.3 Still Vulnerable Despite Source Fix

    The npm-distributed build of claude-sesh 1.1.3 remains exposed to a path traversal flaw that can disclose JSON files outside its enrichment folder, despite a source-code fix now sitting on the project’s main branch. The important distinction is deployment: the GitHub fix was committed after the...