Peter Bhat Harkins @pushcx@octodon.social
Follow

Just closed a Lobsters security bug that allowed commenters to use any hat. Thanks to David Wolgemuth for reporting and patching this. An audit showed it was never exploited. github.com/lobsters/lobsters/c