> Apache's team has been prompt to respond and patch, and nice as hell. Really good experience. PHP never answered regarding the UAF.
I expect that it'll be fixed, not not handled as a security issue, as it doesn't fit within PHPs model of security vulns.
I'm not sure how I feel about such a response. Many exploits require odd, but valid code, and more often than not it exists out there.
Also, it feels weird for this to be tagged as a JSON issue?
> Apache's team has been prompt to respond and patch, and nice as hell. Really good experience. PHP never answered regarding the UAF.