The author of cURL posted on LinkedIn about this with praise and the addition that AISLE has reported vulns to them in the past.
https://www.linkedin.com/posts/danielstenberg_vulnerabilitie...