
Front-End Fire 125: The RSC Vulnerabilities Keep Coming
Dec 15, 2025
Dive into the latest security vulnerabilities cropping up in React Server Components. Discover how Anthropic is giving back to the open-source community with their MCP donation. Get a sneak peek into Google's CSS developments set for 2025, including exciting new features and customizations. Plus, hear about Disney's bold move to allow user-generated content featuring beloved characters. And don’t miss whimsical discussions on twinkly Christmas lights and innovative ways to organize cables under desks!
AI Snips
Chapters
Transcript
Episode notes
Validator Tool Prevents Hallucinated API Calls
- TJ Mantle describes a Blues project MCP tool that validates internal APIs and prevents hallucinated calls.
- That specific validator tool proved highly useful because it enforced schema and caught made-up API calls.
CSS Wrapped Is A Practical 2025 Roadmap
- Google's CSS Wrapped aggregates major CSS features shipping or arriving in 2025 with demos and browser support.
- The write-up helps track practical adoption timelines and experiment safely with fallback-friendly features.
Use Invoker Commands To Reduce JS
- Try invoker/command attributes to open dialogs and popovers declaratively to reduce JS.
- Wait for broader Safari support or polyfill because the feature lacks graceful fallback.
