logoalt Hacker News

flaminHotSpeedotoday at 4:58 PM2 repliesview on HN

Do you have a public source about an embargo period for this one? I wasn't able to find one


Replies

charcircuittoday at 5:49 PM

Considering there were patched libraries at the time of disclosure, those libraries' authors must have been informed ahead of time.

Pharaoh2today at 5:33 PM

https://react.dev/blog/2025/12/03/critical-security-vulnerab...

Privately Disclosed: Nov 29 Fix pushed: Dec 1 Publicly disclosed: Dec 3

show 1 reply