• kuhli@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    8
    arrow-down
    1
    ·
    16 hours ago

    I don’t think a statement is really needed here, this wasn’t a vulnerability, the code was never called. Even if the code were called, the $10,000 bounty is for a different type of bug entirely too

    • baines@lemmy.cafe
      link
      fedilink
      English
      arrow-up
      3
      ·
      edit-2
      8 hours ago

      so stacking vulnerabilities is a thing

      if the code exists it can be called

      this is a valid bug and it’s silly to rule lawyer something like this

      so good job amd, you are ‘actually’ right,

      this totally won’t cost you in the long run at all

      god damn do lawyers and business majors need to stop making tech decisions