• LoafyLemon@kbin.social
      link
      fedilink
      arrow-up
      14
      arrow-down
      1
      ·
      edit-2
      1 year ago

      The context is right there, on the gitlab page. They don’t want to merge it because it would mean they have to do actual work and spend time testing it, which instead they’d prefer their customers to complain to them about the vulnerability first before doing any of that. Not my words, but theirs.

      • Kristof12
        link
        fedilink
        arrow-up
        3
        ·
        1 year ago

        Waiting for a security breach to fix something, sounds crazy