obra’s avatarobra’s Twitter Archive—№ 11,679

  1. Classy. Find a "vulnerability" in a package based on an automated tool run. Never check for a false positive. Publish advisory. Get CVE.