Hacker News new | ask | show | jobs
by ramses0 851 days ago
BRB, filing CVE's against literally any project with example code in their documentation...
2 comments

That's actually supported by the CVE program rules. Have at it if you find examples with security vulns.
I've actually seen CVEs like that before, I agree that's bonkers but I have seen it...
Given how frequently people copy and paste example code… why is that surprising? Folks need to be informed. CVEs are a channel for that.
Pssst: People who copy+paste example code aren't checking CVEs