This was posted on HN https://news.ycombinator.com/item?id=39866275 That guy did max damage. He did at least 750 commits to xz. https://files.mastodon.social/media_attachments/files/112/183/261/055/008/495/original/c4f6ea9d9db12b07.png
Here's evidence to support that vulnerabilities should be publicly disclosed immediately. nostr:nevent1qqs9r2ax7asgkkgrzdws0seda0aejh3pvqdxdk7nalqk33q3a5zctrqpzamhxue69uhhyetvv9ujumn0wd68ytnzv9hxgtczyrxr0yynqu3tlfe79ru692sgxfcx3ppstjuqdplzpynu09sdhxgc2qcyqqqqqqg388znw