Skip to content

fix(cli): use numeric TIOCSTI in macOS sandbox policy - #1

Open
bibryam wants to merge 1 commit into
mainfrom
codex/fix-macos-tiocsti-constant
Open

bibryam wants to merge 1 commit into
mainfrom
codex/fix-macos-tiocsti-constant

fix(cli): use numeric TIOCSTI in macOS sandbox policy

f29d100
Select commit
Loading
Failed to load commit list.
Debricked / Vulnerability analysis completed Sep 12, 2026 in 15s

An automation triggered a pipeline warning

Found 36 vulnerabilities. An additional 0 vulnerabilities have been marked as unaffected.

Output from Automations

4 rules were checked:


If a new dependency is added where the license risk is at least medium

then notify all users in the group admins by email

✔️ The rule did not trigger. Manage rule



If a dependency contains a vulnerability which has not been marked as unaffected and which has not triggered this rule for this dependency before

then notify all users in the group admins by email

✔️ The rule did not trigger. Manage rule



If there is a dependency where the license risk is at least high

then send a pipeline warning

✔️ The rule did not trigger. Manage rule



If a dependency contains a vulnerability which has not been marked as unaffected

then send a pipeline warning

⚠️ The rule triggered for the following vulnerabilities, causing a pipeline warning. Manage rule

Vulnerability CVSS2 CVSS3 CVSS4 Dependency Dependency Licenses
CVE-2026-54653 N/A 8.8 N/A datamodel-code-generator (pypi) MIT
CVE-2026-0621 N/A 7.5 8.7 @modelcontextprotocol/sdk (npm) MIT
CVE-2026-42327 N/A N/A 8.7 openssl (Cargo) Apache-2.0
CVE-2026-41898 N/A 5.3 8.3 openssl (Cargo) Apache-2.0
CVE-2026-54690 N/A 8.2 N/A datamodel-code-generator (pypi) MIT
CVE-2026-54691 N/A 8.2 N/A datamodel-code-generator (pypi) MIT
CVE-2026-41681 N/A 7.5 8.1 openssl (Cargo) Apache-2.0
CVE-2026-44471 N/A 7.8 N/A gix-fs (Cargo) MIT
CVE-2026-54654 N/A 7.8 N/A datamodel-code-generator (pypi) MIT
CVE-2026-54621 N/A 7.8 N/A datamodel-code-generator (pypi) MIT
CVE-2026-55389 N/A 7.5 N/A datamodel-code-generator (pypi) MIT
CVE-2023-43669 N/A 7.5 N/A tungstenite (Cargo) Unknown License
CVE-2026-55391 N/A 7.5 N/A datamodel-code-generator (pypi) MIT
CVE-2026-55415 N/A 7.5 N/A datamodel-code-generator (pypi) MIT
CVE-2026-41676 N/A 7.5 7.2 openssl (Cargo) Apache-2.0
CVE-2026-41678 N/A 8.1 7.2 openssl (Cargo) Apache-2.0
CVE-2026-25536 N/A 7.1 N/A @modelcontextprotocol/sdk (npm) MIT
CVE-2026-25537 N/A 7.5 5.5 jsonwebtoken (Cargo) MIT
CVE-2026-48504 N/A 5.3 N/A opentelemetry_sdk (Cargo) Apache-2.0
CVE-2026-33055 N/A 8.1 5.1 tar (Cargo) Apache-2.0
CVE-2026-33056 N/A 6.5 5.1 tar (Cargo) Apache-2.0
CVE-2026-45784 N/A 7.1 5.1 openssl (Cargo) Apache-2.0
CVE-2026-44662 N/A N/A 5.1 openssl (Cargo) Apache-2.0
CVE-2026-55403 N/A 3.7 N/A datamodel-code-generator (pypi) MIT
CVE-2026-50185 N/A N/A 2 cmov (Cargo) Apache-2.0
CVE-2026-41677 N/A 9.1 1.7 openssl (Cargo) Apache-2.0
GHSA-3pv8-6f4r-ffg2 N/A N/A N/A tar (Cargo) Apache-2.0
GHSA-q2qq-hmj6-3wpp N/A N/A N/A hickory-proto (Cargo) Apache-2.0
GHSA-xhj4-vrgc-hr34 N/A N/A N/A actix-http (Cargo) Apache-2.0
GHSA-3v94-mw7p-v465 N/A N/A N/A hickory-proto (Cargo) Apache-2.0
GHSA-7gcf-g7xr-8hxj N/A N/A N/A serde_with (Cargo) Apache-2.0
GHSA-3pv8-6f4r-ffg2 N/A N/A N/A tar (Cargo) Apache-2.0
GHSA-f26g-jm89-4g65 N/A N/A N/A gix (Cargo) MIT
GHSA-p3hw-mv63-rf9w N/A N/A N/A gix (Cargo) MIT
GHSA-pg4w-g64p-qwhj N/A N/A N/A gix (Cargo) MIT
GHSA-fr8x-3vfx-f45h N/A N/A N/A gix (Cargo) MIT
GHSA-x494-mj8g-cj27 N/A N/A N/A gix-pack (Cargo) Apache-2.0