Instead of patching millions of environments, perhaps it’s better to just build a secure one from scratch?
That’s what I did with Safebox: https://safebots.ai/about/infrastructure.html