Hacker News new | ask | show | jobs
by tester756 847 days ago
I don't understand why maintainer is so snarky when this tool found legit issue that they fixed <wtf>
1 comments

It looks like a minor bug that was reported as a high severity security issue, with the reporter not being able to explain why other than "this kind of error CAN be bad".

Not sure if I'd be snarky for the first few clueless reports, but I'd probably be getting there after several of them have happened.

Also not following general polite disclosure on a security issue...

Tell them privately first, ideally with a repro