5 ms·
Was it not curl https://arstechnica.com/gadgets/2025/05/open-source-project-curl-is-sick-of-users-submitting-ai-slop-vulnerabilities/ https://arstechnica.com/ga
by ciaranmca 1y ago
Was it not curl https://arstechnica.com/gadgets/2025/05/open-source-project-curl-is-sick-of-users-submitting-ai-slop-vulnerabilities/ https://arstechnica.com/gadgets/2025/05/open-source-project-...
- jjjutla 1y agoFor all the vulns Gecko found they were manually validated by humans and have a CVE assigned by a CNA. The issue that curl had was because it was a paid bug bounty program they had an influx of AI slop reports that looked like real issues but weren't exploitable.