Boosted by andrewnez ("Andrew Nesbitt"):
hugovk ("Hugo van Kemenade") wrote:
We've updated our security policy on how to report vulnerabilities:
https://github.com/python-pillow/Pillow/pull/10018
Much of this based on the good stuff in the CPython security policy:
https://devguide.python.org/security/policy/
Yesterday's 82 reports totalled 226,620 words (144,437 without code), an average of 2,764 each (1,761 without code).
Moby Dick is 212,796 words (A Tale of Two Cities is 135,886 words).
I've asked the reporter to re-run their tools and update/close as necessary.