Hacker News new | ask | show | jobs
by yieldcrv 447 days ago
I like NextJS and this vulnerability requires a specific self-hosting arrangement coupled with specific flag

I think this discussion is bringing a lot of unrelated angst out of the wood works that is beyond the level of rationality warranted

I think its rightful to be skeptical of Vercel’s incentives to vendor lock, and how long it took to deal with this vulnerability. Thats all independent of most of what I’m reading here