• LoafyLemon@kbin.social
    link
    fedilink
    arrow-up
    14
    arrow-down
    1
    ·
    edit-2
    1 year ago

    The context is right there, on the gitlab page. They don’t want to merge it because it would mean they have to do actual work and spend time testing it, which instead they’d prefer their customers to complain to them about the vulnerability first before doing any of that. Not my words, but theirs.

    • Kristof12
      link
      fedilink
      arrow-up
      3
      ·
      1 year ago

      Waiting for a security breach to fix something, sounds crazy