A new read helper verifies a file after opening it, closing a swap-the-path gap.
What's wrong with this entry?
A new read helper opens a file first, then confirms via the open handle that it is a regular file within a size limit before reading, and returns nothing instead of throwing. This closes the gap where a path could change between being checked and being read.
readFileFdGated
Strings lifted out of the shipped bundle, so the claim above can be checked against them.
Related
Other releases about the same thing. Found by shared names or similar wording; neither means one caused the other.