i've been thinking about writing a blog post about the Go Security team approach to (lack of) severity labeling for vulnerabilities, probably with an aside about the (non) utility of CVSS scores.
would people actually find this useful/interesting, or would i just be posting into the security void
would people actually find this useful/interesting, or would i just be posting into the security void
Comments