Comment on CVE Board members launch the CVE Foundation, a dedicated, non-profit to continue identifying vulnerabilities, after the US ended its contract with Mitre

<- View Parent
xthexder@l.sw0.com ⁨3⁩ ⁨days⁩ ago

If it has value to a larger community, the larger community should be able to fund its operation.

Up until very recently it seemed perfectly reasonable to fund this sort of thing with taxes, because it benefits everyone even if they’re not directly using the database. An open source developer probably isn’t going to pay to look up vulnerabilities in the open source dependencies they use, so the database being free makes software more secure on average.

What is wrong with having free public services? If someone is abusing it, block them, or charge fees like a library.

source
Sort:hotnewtop