Is there a comprehensive list of past security weaknesses and the version they were fixed in anywhere?
For example, I notice that there is a security label in the issue tracker here, which should in theory provide such a list.
When I search for it, however, I also notice that issue #3374— a critical security flaw by any reckoning— is not properly tagged.
As a new user, this immediately raises alarm bells for me: If information on known vulnerabilities is not properly indexed and publicly available, then how can I be sure that I've done everything I can to protect my funds? It makes it difficult to make informed decisions and IMO it hurts credibility as well since such critical information shouldn't be left unorganized.
Proper tagging of issues on this issue tracker would fix this, as could a dedicated page in the documentation.
IDK if this is maybe not an issue because there haven't been any other critical security flaws; but then again, I can't know because there doesn't seem to be much documentation or organization in that regard.
Is there a comprehensive list of past security weaknesses and the version they were fixed in anywhere?
For example, I notice that there is a
security
label in the issue tracker here, which should in theory provide such a list.When I search for it, however, I also notice that issue #3374— a critical security flaw by any reckoning— is not properly tagged.
As a new user, this immediately raises alarm bells for me: If information on known vulnerabilities is not properly indexed and publicly available, then how can I be sure that I've done everything I can to protect my funds? It makes it difficult to make informed decisions and IMO it hurts credibility as well since such critical information shouldn't be left unorganized.
Proper tagging of issues on this issue tracker would fix this, as could a dedicated page in the documentation.
IDK if this is maybe not an issue because there haven't been any other critical security flaws; but then again, I can't know because there doesn't seem to be much documentation or organization in that regard.