|
|
|
|
|
by jorge_leria
977 days ago
|
|
The fact that we kept it in triage means that we believed there was something. Also the reporter gave a really good explanation. By the time the report was originally sent the feature was just released, and while we never deployed a code change to directly address it, it wouldn't be the first time that we receive something that I believe it was genuinely a security issue and stopped being reproducible due to an seemingly unrelated change around the same time. |
|
So for three years you believed there was something, yet you didn't invest sufficient resources to reproduce and/or understand the issue, while at the same time, all these three years security was of utmost importance?