Right. Open source languages become popular not by describing and fixing security holes promptly, but by having their super-users analyze patch notes for vulnerabilities, and code around them. The sure fire path to widely used, production ready releases.
All languages and their libraries have vulnerabilities, many not yet discovered.
Instead of living in perpetual fear of being hacked, I'm out there doing what is more important to me: creating great web applications that users want to use, in a language I love using.