|
|
|
|
|
by wkd
3566 days ago
|
|
"Despite reporting the problem to the author on Friday, and following up the report via Twitter this has not yet been fixed, but after four days I assume I'm not alone in spotting this." Giving someone a weekend to fix something doesn't exactly sound like responsible disclosure.
I understand if you get excited because you found a flaw but if you find something like this please be more responsible with publishing your findings. |
|
If already half a dozen people on HN report they’ve found it and emailed the person about it, it’s likely it’s too late for responsible disclosure.