Rapid7 throws JetBrains under the bus for ‘uncoordinated vulnerability disclosure’

Security shop Rapid7 is criticizing JetBrains for flouting its policy against silent patching regarding fixes for two fresh vulnerabilities in the TeamCity CI/CD server. Rapid7 says it reported the two TeamCity vulnerabilities in mid-February, claiming JetBrains soon after suggested releasing patches for the flaws before publicly disclosing them.

Source: The Register

 


Date:

Categorie(s):

Tag(s):