Le mer. 17 nov. 2021 à 13:30, Christoph M. Becker <cmbecke...@gmx.de> a écrit :
> Right.  An alternative might be to let users report security issues to
> the security mailing list, where, if the issue turns out not to be a
> security issue, the reporter could still be asked to submit a GH issue
> about the bug.  In that case it might be useful to add more devs to the
> security mailing list.

I was thinking about the same. Can't we work with security issues with
mailing list *only*?
It doesn't feel optimal to keep bugs.php.net active for just security ones.
I miss seeing the motivation for it.

Patrick

--
PHP Internals - PHP Runtime Development Mailing List
To unsubscribe, visit: https://www.php.net/unsub.php

Reply via email to