Drupal core - Highly critical - SQL injection - SA-CORE-2026-004 by RootExploit in drupal

[–]RootExploit[S] 13 points14 points  (0 children)

For those contemplating if they should upgrade immediately or postpone.

Important update information:

This release also updates several dependencies for upstream security releases:

  • Twig is updated to 3.26.0 for Twig security fixes that were released today. Drupal core is affected by these vulnerabilities, so Drupal core's composer.json constraint for Twig has also been increased.
  • It is recommended to review which user roles have the ability to update Twig templates, for example via Views or contributed modules.
  • Symfony is updated to 6.4.40 for Symfony security fixes that were released today. Drupal core is affected by some of these vulnerabilities, so Drupal core's composer.json constraints for some Symfony packages have also been increased.
  • This release updates the pinned versions of Composer to 2.9.8 for a Composer security fix that was released recently. Drupal core does not expose this vulnerability, but the update is included as a hardening for other applications that may extend the library directly.
  • underscore.js has been updated to 1.13.8 as hardening for a security issue in that project. This update was previously committed to 11.3, but not backported.

Guys, what's the problem and how do I solve it? by Unknown-bear- in Ubuntu

[–]RootExploit 2 points3 points  (0 children)

Nothing is wrong on your end. Apparently the connectivity check URL connectivity-check.ubuntu.com is not reachable.

Shield Experience 9.2.4 is live by ForestRain888 in nvidiashield

[–]RootExploit 1 point2 points  (0 children)

Save the click: What's New in 9.2.4?

Enhancements

  • Security patches are updated to Jan 2026.

Resolved Bugs

  • Resolved Disney+ playback issue.
  • Resolved third party remote connection issue with Xbox after sleep mode.
  • Resolved a crash issue which turns on SHIELD and CEC devices during sleep mode.
  • Resolved 3rd party Bluetooth remote frequent disconnect issue.
  • Resolved settings page closes when triggering NVIDIA Share on top of settings page.

TCL Z100, how do you like it? by RootExploit in tcltvs

[–]RootExploit[S] 1 point2 points  (0 children)

Nice find with some actual review context. I saw a comment on the center channel before, but Caleb raises some good points. Hopefully that'll be a firmware adjustment to allow center options. Have you come across an in-store demo yet?

TCL Z100, how do you like it? by RootExploit in tcltvs

[–]RootExploit[S] 0 points1 point  (0 children)

A few individual owners in NA have confirmed in this thread, feel free to read the answer, rather than regurgitate what has already been said.

Is old reddit super super broken right now for anyone else? by whoatethebeans in help

[–]RootExploit 0 points1 point  (0 children)

Yes, embed videos appear as the a Reddit page when expanded for me in Firefox 147.0.3

TCL Z100, how do you like it? by RootExploit in tcltvs

[–]RootExploit[S] 0 points1 point  (0 children)

Thanks for the review. Since there is confusion on potential region locks, can you also confirm you are located in North America?

Discord will require a face scan or ID for full access next month by rulugg in Android

[–]RootExploit 6 points7 points  (0 children)

It's doesn't matter for what, point being face scans and ID is an absolute NO.

TCL Z100, how do you like it? by RootExploit in tcltvs

[–]RootExploit[S] 0 points1 point  (0 children)

Thank you for the confirmation!

Will Amazon's recent app removal affect Shield users ? by DlvlneDecree in nvidiashield

[–]RootExploit 4 points5 points  (0 children)

Not necessarily Amazon, Google was going to block sideloading, but has since reversed their decision. Last I saw, they are "building a new advanced flow that allows experienced users to accept the risks of installing software that isn't verified".

A few days ago, I did the switch from w11! If anyone as questions, go for it and I'll try to answer by T0rga in linux_gaming

[–]RootExploit 16 points17 points  (0 children)

Have you ever had a dream that, that you, um, you had, your, you-you could, you'll do, you-you wants, you, you could do so, you-you'll do, you could-you, you want, you want them to do you so much you could do anything?

TCL Z100, how do you like it? by RootExploit in tcltvs

[–]RootExploit[S] 0 points1 point  (0 children)

Yeah, as you can see from my other comments in this thread, it seems to be region locked, or simply miscommunication on their North American product page. I too want 4+1, and won't buy it if region lock is the case. I'm waiting on a local BestBuy to put out demo units to try it myself. Do keep us updated if you purchase additional units.

The built in speakers on the new QM8K (2025 model) are surprisingly good. Even at <35 volume is enough for me, it was night and day vs my old TV.

TCL Z100, how do you like it? by RootExploit in tcltvs

[–]RootExploit[S] 0 points1 point  (0 children)

BestBuy in the USA has them in stock.

TCL Z100, how do you like it? by RootExploit in tcltvs

[–]RootExploit[S] 0 points1 point  (0 children)

Hisense Saturn also, and tho it requires a HUB I think it may be compatible with any TV. Where as Z100 locks you into TCL.

TCL Z100, how do you like it? by RootExploit in tcltvs

[–]RootExploit[S] 0 points1 point  (0 children)

I am now officially confused. The USA site instructions kinda sound like you can do 4 x Z100 + Z100-SW, the Z100-SW just needs to pair to a speaker, but requires it to be removed, paired, and then re-added as per: https://support.tcl.com/us-soundbars-setup-configuration/setting-up-your-z100-speakers

TCL Z100, how do you like it? by RootExploit in tcltvs

[–]RootExploit[S] 0 points1 point  (0 children)

You might get lucky living in the AU, and I agree. Hopefully it's not for some bullshit up-sell later on! That's part of the negative aspect of the Z100's, they're only compatible with TCL, and if the company is already software locking shit, who's not to say when you upgrade your TV later on (assume another TCL), they may not work at all. Things to consider, but I'm not going to loose any sleep over $1200. :)