Hacker News with Generative AI: Software Vulnerabilities

Zizmor would have caught the Ultralytics workflow vulnerability (yossarian.net)
TL;DR: zizmor would have caught the vulnerability that caused this…mostly. Read on for details.
CVE-2024-29510 – Exploiting Ghostscript using format strings (codeanlabs.com)
"90% of Java services have critical or security vulnerabilities" (vived.substack.com)