2026-07-17 10:48 UTC
@hugovalters@mastodon.social thanks for the clarification and the link. I'm pretty sure it's all public data. I am very interested in addressing that issue from the root, can you point me to handle that? i've always seen the CVE scene as a very burocratic and sluggish machinery that never reflects the reality, but if we can do something to address that for radare at least it would be great
Replies (1)
-
@hugovalters@mastodon.social 2026-07-18 08:00
@radareorg@infosec.exchange I really appreciate this proactive mindset! You are 100% right about the sluggish machinery. As an immediate root fix for open-source, strictly updating GitHub Security Advisories (GHSA) with patched versions is the best route, as our automated pipeline syncs that hourly. However, there's hope on the horizon! Next week we are officially integrating the European Vulnerability Database (EUVD) and other official institutions into our pipeline.