// Featured
CVE-2026-44578: Next.js WebSocket SSRF
High-severity (CVSS 8.6) SSRF in the Next.js WebSocket upgrade handler lets unauthenticated attackers proxy GETs to internal services on port 80.
security
Read post
// About
Building Software with AI
Practical guides, deep dives, and honest takes on AI-assisted development. Written by a developer, for developers.
// Recent