Email or username:

Password:

Forgot your password?
Top-level
derekheld

@bagder it’s all the weirder because they aren’t even trying to report a new vulnerability. Their complaint seems to be that detailed information about a “vulnerability” is public. But that’s how public disclosure works? And open source? Like are they going to start submitting blog posts of vulnerability analysis and ask curl maintainers to somehow get the posts taken down???

3 comments
daniel:// stenberg://

@derekheld they reported this before that vulnerability was made public though

derekheld

@bagder oh as in saying the embargo was broken but with LLM hallucinations as the evidence?

Go Up