Skip Navigation
Dev rejects CVE severity, makes his GitHub repo read-only
  • It's interesting, that it would be hard to make a case that there was a "vulnerability" in the ip package. But it seems like this package's entire purpose is input validation so it's kind of weird the dev thinks otherwise.

    Yes, input validation, probably for forms. What the Dev disputes is that he cannot see a case where it is used in a security critical way where

    1. the input format is unknown and
    2. it is essential to know if the IP is public or private.
  • why cant we connect 2 computers using USB
  • With usb-c you should be able to load a driver that allows network connectivity regardless of otg mode. Or was it Thunderbolt?

    Update: I thought of thunderbolt-net which works with Thunderbolt 3 and probably USB4

  • Why I Lost Faith in Kagi
  • It started with a blog post. If the attempt at a personal discussion is declined, write your own if you feel the need to defend your position publicly. Do not try to force a conversation.

  • Discord is nuking Nintendo Switch emulator devs and their entire servers
  • There could be a middlegreound if revolt implemented a central openid user registry, presence indication and e2ee direct chat plus self hosted communities using that login (and maybe optional local registration). And maybe a community overview for public communities.

  • InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)PR
    progandy @feddit.de
    Posts 0
    Comments 72