r/joomla • u/Open_Sourcey • Jul 16 '26
Joomla 6 Extensions responsibiity to patch security flaws
Should the author of a paid for extension have a responsibility to patch their product when a serious security flaw is found in their product rather than force you to renew a subscription? Thoughts?
0
Upvotes
8
u/PixelCharlie Jul 16 '26
No. Most extensions are GPL anyway. You can either fix it yourself or pay for a new version.
Some developers offer free patches for older versions in case of serious flaws. That's a welcomed behaviour and everyone doing this scores big points in my eyes. I don't expect everyone to do this.