> The upstream author doesn't have enough resources to address them on its own and wants to develop fixes in the open. Therefore I have created GitHub issues in the upstream project and publish the full report today.
I.e. the "and wants to develop fixes in the open" part left me with a very different interpretation from when I first read your comment.
https://redrocket.club/posts/croc/
But audits finding vulnerabilities are better than no audit and no known flaw.
Do these tools have iOS apps?
https://nvd.nist.gov/vuln/detail/CVE-2023-43616
https://nvd.nist.gov/vuln/detail/CVE-2023-43617
https://nvd.nist.gov/vuln/detail/CVE-2023-43618
https://nvd.nist.gov/vuln/detail/CVE-2023-43619
https://nvd.nist.gov/vuln/detail/CVE-2023-43620
https://nvd.nist.gov/vuln/detail/CVE-2023-43621
I will stick with wormhole-william, thank you very much.
I use wormhole-william, the Go version of the Python magic wormhole, and age, mostly because of this Latacora endorsement: