CVSS works only if you can trust the person who prioritizes the vulnerabilities. It just does not take configurational issues into account effectively
In my opinion, is not any more secure than using Wire (via a VPN if you really want to obscure your IP address further). What am I missing?
Using WireGuard on a daily basis on my Linux and iPhone. It really is hard to describe how much better of an experience it offers, compared to OpenVPN. For instance, the connections are more reliable and durable; latency is low and you can understand the software.
I was interested in how fossil handled the SHA1 transition and found it nicely explained here if anyone is interested: https://fossil-scm.org/home/doc/trunk/www/hashpolicy.wiki