A security issue in Omarchy’s default Docker configuration meant that
essentially every program running in the user’s desktop session could escalate
to root without a password, sudo, or a privilege prompt.
If you use Omarchy, the most important takeaway is
simple: update to 4.0.1.
I reported this issue privately through the project’s responsible-disclosure
process. The underlying configuration has since been patched, so I’m publishing
the details now to explain what the issue is and let users know to update their
systems.
Can you publish some sources for that?
just the first one off the top of my head: https://tekin.co.uk/2025/09/the-ruby-community-has-a-dhh-problem
I always knew he was a bit polarizing but I wasnt aware its that bad. Thx for sharing
yeah it’s bad that the omarchy community has taken the DHH kool-aid. I watched a video lastnight of a guy from India who was praising Omarchy and said all the hate was because purely of DHH and not understanding why. It was like “My guy, he made comments directed towards YOU and YOUR People specifically about living in London. He doesn’t want YOU to using his distro”.
Thank you. That is very clear.
I don’t know how I can give you some “sources” for that, but feel free to have a look at the few blog posts of the guy and make your mind.
https://world.hey.com/dhh
The above is my personal opinion which I have formed by reading the blog posts of DHH so I am not aware of any “sources” for that. Feel free to have a look at what this guy stands for: https://world.hey.com/dhh