logoalt Hacker News

ikmckenz06/24/20251 replyview on HN

Related: https://arstechnica.com/gadgets/2025/05/open-source-project-...


Replies

moyix06/24/2025

The main difference is that all of the vulnerabilities reported here are real, many quite critical (XXE, RCE, SQLi, etc.). To be fair there were definitely a lot of XSS, but the main reason for that is that it's a really common vulnerability.

show 1 reply