• 0 Posts
  • 13 Comments
Joined 2 months ago
cake
Cake day: April 12th, 2026

help-circle
  • Doesn’t make sense… This premise seems flawed by two aspects:

    1. The maintainers can introduce vulnerabilities unknowingly themselves
    2. They should only merge patches that they fully understand

    It feels like they are not capable of detecting a vulnerability when they see one. meaning that they themselves can potentially introduce tons of new vulnerabilities unknowingly.

    In this situation it would be for the best to have a large pool of contributors capable of detecting such issues, instead of closing it even further.