If you're using React Server Components (Nextjs, React Router, etc.), an attacker can send a malicious request and get full remote code execution on your server. No auth needed.
This effectively means that they can do anything they want. It is rated CVSS 10.0. The maximum possible!
Anyone wants to participate on Advent of code 2025? thinking about having a small group to just discuss different implementations and keeping each other accountable.
ETHGlobal Prague is over. I was sick so I didn't get to go through the judging process, so doing it in farcaster instead.
Presenting RightClickExplore: Right-click any wallet to reveal onchain identity, reputation & cross-chain actions.
Test for EthGlobal Prague:
* 0x33041027dd8F4dC82B6e825FB37ADf8f15d44053
* 0xf0F40496e357CE970BbFe22698554b65155BF070
* 0xA0b86991c6218b36c1d19D4a2e9Eb0cE3606eB48
Wrote a bit about how at @talent we're migrating millions of profiles to a whole new Builder Score that was re-built from the ground up in a scalable manner. The key factor? The Builder Score
https://x.com/0x_leal/status/1897287828780015804
Started using my apple watch again and focusing on working out. It's time to get the streak going as much as my chess playing streak, which will reach day #250 tomorrow 🔥