We have received more security reports against #curl in 2026 so far than we did during the entire year back in 2024.
During the first three months we have received twice the amount of reports/week as we did last year.
We have received more security reports against #curl in 2026 so far than we did during the entire year back in 2024.
During the first three months we have received twice the amount of reports/week as we did last year.
someone in another open source project (to remain anonymous here) replied to my weekly email and said "as a comparison, we received 70 reports last week"
The ongoing "security report overload" is systematic and everywhere now.
Endure fellow maintainers!

Trac ticket number N/A Branch description This extension to the policy came up in various places (DSF Slack, Fellows sync, etc) and follows an initiative from Seth Larson. AI Assistance Disclosure ...