Le mer. 17 nov. 2021 à 13:30, Christoph M. Becker <cmbecke...@gmx.de> a écrit : > Right. An alternative might be to let users report security issues to > the security mailing list, where, if the issue turns out not to be a > security issue, the reporter could still be asked to submit a GH issue > about the bug. In that case it might be useful to add more devs to the > security mailing list.
I was thinking about the same. Can't we work with security issues with mailing list *only*? It doesn't feel optimal to keep bugs.php.net active for just security ones. I miss seeing the motivation for it. Patrick -- PHP Internals - PHP Runtime Development Mailing List To unsubscribe, visit: https://www.php.net/unsub.php