Source · DiggingBeagle record
DeepSeek Harness fix: authenticate the browser Host API
Vendor repository fix commit replacing trust in request routing facts with authenticated browser-session handling and peer-aware checks.
- Accessed
- Sep 19, 2026
- Publisher
- DeepSeek AI
- Source type
- vendor_patch
- Version
- 3e24087
Each support, contradiction or context label applies to a cited Claim, not to a whole Case.
Source record
fix(web): authenticate the browser Host API
Claim-level citations (1)
- supportsDeepSeek Harness let a confined agent disable its own sandbox through the local control plane: The vulnerability was fixed in DeepSeek Harness 0.1.2-alpha.1, and OX reports that it re-tested that release on August 30, 2026 and confirmed remediation.
Fix commit changing browser Host API authentication and request trust handling
Cite this record
DiggingBeagle. “DeepSeek Harness fix: authenticate the browser Host API.” Accessed Sep 19, 2026. https://diggingbeagle.com/sources/deepseek-harness-fix-authenticate-the-browser-host-api/
Citation guidance