←back to thread

298 points sangeeth96 | 1 comments | | HN request time: 0s | source
Show context
yread ◴[] No.46238173[source]
Were there not enough eyes on React Server Components before the patches from last week?
replies(2): >>46238327 #>>46239398 #
1. manfre ◴[] No.46239398[source]
I've noticed a pattern in the security reports for a project I'm involved in. After a CVE is released, for the next month or so there will likely be additional reports targeting the same (or similar) areas of the framework. There is definitely a competitive spirit amongst security researchers as they try to get more CVEs credited to them (and potentially bounties).