logoalt Hacker News

35876today at 3:09 PM1 replyview on HN

Maybe OpenAI didn't update Artifactory but the clanker read the advisory and used the exploit.

Huggingface, OpenAI and JFrog are all AI invested, so all we get is spins and euphemisms.


Replies

K3ULtoday at 3:27 PM

This seems unlikely as it would mean JFrog knew the vulnerability before OpenAI, which this blog posts clearly says the opposite