In 2026, the discourse around open-source security vulnerabilities has become chaotic, focusing more on the sheer number of attacks rather than how they occurred or potential solutions. The author criticizes companies that promise to 'fix' these issues, arguing that their solutions are often manufactured problems designed to sell more products.