Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

oop found a security issue - you can abuse profile pictures to upload any file (e.g. to host malware if you were a bad actor!)

IMO don't think this is ready for production use in the slightest - but cool project!



Would be interested to know if this was vibe coded.


This has been patched - thanks for flagging!


Not a bug necessarily, but one of the key features of trello is multi-user editing which doesn't seem to work.

i.e. if I open two tabs, and edit one tab, the other tab doesn't update and visa-versa until refresh.




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: