| ▲ | tptacek 14 hours ago | |||||||||||||||||||||||||
Nobody is disputing that a wide variety of vulnerabilities are "useful", only that there's no market for most of them. I'd still urgently fix an XSS. | ||||||||||||||||||||||||||
| ▲ | rvnx 14 hours ago | parent [-] | |||||||||||||||||||||||||
There is a market outside Zerodium, it's Telegram. Finding a buyer takes time and trust, but it has definitively higher value than 4k USD because of its real-world impact, no matter if it is technically lower on the CVSS scores. | ||||||||||||||||||||||||||
| ||||||||||||||||||||||||||