Hacker News new | ask | show | jobs
by spullara 4749 days ago
The real issue with bundling software is that you can't pull in a security patch. You actually have the same issue with internal packages at large companies. If you can stay on the current release you can drastically reduce the effect of security bugs.