(no title)
agosta
|
2 months ago
Mintlify had a blacklist in place to not allow them to do this with most file types. Someone failed to add SVG to it. It's not like they weren't thinking about security. The challenge with security, as you know, is it's only as strong as it's weakest link. It only takes one ignorant/incompetent person in an entire organization to jeopordize the org. But even a competent person can make a crucial mistake.
sofixa|2 months ago
https://kibty.town/blog/mintlify/
The first CVE here definitely sounds like they absolutely weren't thinking care security.
pmontra|2 months ago
anonymous908213|2 months ago
esseph|2 months ago
In practice, I've never known a single organization to hit that bar. Ever.