A security issue in Omarchy’s default Docker configuration meant that
essentially every program running in the user’s desktop session could escalate
to root without a password, sudo, or a privilege prompt.
If you use Omarchy, the most important takeaway is
simple: update to 4.0.1.
I reported this issue privately through the project’s responsible-disclosure
process. The underlying configuration has since been patched, so I’m publishing
the details now to explain what the issue is and let users know to update their
systems.
The creator and maintainer of NeoVim was also really against removing a DHH endorsement from the NeoVim website and called it cancel culture.
Made me look at helix, which actually works better for my usecase. So I guess I gotta thank him for that?
I’m in the exact same boat as I also switched to helix haha