is there a good link for “I’m an open source maintainer and someone just reported a security problem to me, what do I do now?” - assuming maintainer does not know what “responsible disclosure,” “CVE,” etc are in advance - how does someone learn how to handle security bugs?
-
-
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.