Urgent.News

What's breaking now, across thousands of outlets.

Continued

Tech

Postgres RLS in Symfony: three green isolation tests, and the UPDATE that moves tenant 1's invoices into tenant 2's books

Two articles ago I wrote that the Postgres role which runs your migrations bypasses every row-level security policy. Last week I wrote that with one tenant in the fixture, your isolation suite passes…

  • Postgres role bypasses row-level security policies during migrations
  • Tenant 1 can move all invoices into tenant 2's books with one SQL statement
  • Fixing policy allows security hole for tenant 1 to move invoices

Tech

Dario, Please

Article URL: https://pop.rdi.sh/dario-please/ Comments URL: https://news.ycombinator.com/item?id=49697893 Points: 267 # Comments: 140

Tech

Linux 7.3 Delivering Some Performance Gains On Intel Panther Lake / Framework Laptop 13 Pro

Linux 7.1 brought some performance improvements for Intel Core Ultra Series 3 "Panther Lake", Linux 7.2 enhanced the performance for the integrated Arc B390 Xe3 graphics, and now for the…

  • Linux 7.3 kernel offers performance gains on Intel Panther Lake processors
  • Framework Laptop 13 Pro benefits from enhanced performance in Linux 7.3
  • No significant regressions observed, but Linux 7.3 shows notable improvements

Tech

Security updates for Monday

Security updates have been issued by AlmaLinux (389-ds-base, apr-util, coreutils, freerdp, git-lfs, glib2, gstreamer1-plugins-base, kernel, libkcapi, nginx, nodejs:22, nodejs:24, osbuild-composer…

  • Security updates released by Linux distributions on Monday
  • Updates affect authentication tools, network services, browsers, tools
  • Distributions include AlmaLinux, Debian, Fedora, Gentoo, Mageia, Oracle, SUSE, Ubuntu

Tech

September Patch Tuesday: 963 CVEs, 2 exploited flaws, 1 message

Microsoft’s September 2026 Patch Tuesday is the year’s largest release, with 963 CVEs requiring customer action, 106 rated critical. Two are already exploited: CVE-2026-81963 in the Windows Update Stack and CVE-2026-85880 in Advanced Local Procedure Call . Nothing in this release was publicly disclosed ahead of the patch.

Continue reading →