1. Arrai v0.336.0 Release Fixes Critical lodash CVE, Exposes 22 Remaining Security Advisories
The release of Arrai v0.336.0 patches a critical code-injection vulnerability in the project's documentation dependency tree, but the broader security audit reveals a deeper, unresolved risk. The update specifically addresses the lodash vulnerability identified as GHSA-r5fr-rjxr-66jc. Crucially, this fix only impacts b...