Good morning, What is funny about the paper is, that he lists contact with all the other vendors and how they reacted to his responsible disclosure, but this is missing for ModSec.
Has there been no contact / no interest to patch in due time? Ahoj, Christian -- It's easier to ask forgiveness, than it is to get permission. -- Radm Grace Hopper, aka Amazing Grace _______________________________________________ Owasp-modsecurity-core-rule-set mailing list [email protected] https://lists.owasp.org/mailman/listinfo/owasp-modsecurity-core-rule-set
