Zero trust doesn't exist.
In this case, everyone who is a Nxt user is trusting the developers. There is simply no choice.
There maybe reasons not to publish the exploits until most users have upgraded.
Fair point.
I updated the
software change log on the wiki tonight, and the "change log" for this version and the last one really bugged me. Just compare what was said about these two versions to almost ANY previous version and you'll see what I mean.
Jean-Luc and CfB have earned a fair bit of trust from me since December.... but based on the information around these two updates, I've stepped slightly backwards from my previous trust level.
Reading between the lines of their posts this is what I get: there's an active exploit in the wild right now.
Upgrade. Seriously.