![](https://files.mastodon.social/accounts/avatars/108/196/065/489/175/548/original/4d4d89c074d2d4c7.jpeg)
![](https://beehaw.org/pictrs/image/c0e83ceb-b7e5-41b4-9b76-bfd152dd8d00.png)
@TheBaldness
When you bundle everything for an app inside a self-contained directory, it’s no different than static linking a binary.
An exploit in a library the package links against means that application is still vulnerable even if the same library on the operating system has been updated to fix the security flaw.
@TheBaldness
For apps that Apple controls that may be fine, but most people do not get their apps from a single vendor and not all vendors are fast at pushing updates.