The Zero Day Initiative is setup to pay security researchers for their exploits. Recently, they announced their intentions to release general info about exploits that have gone unpatched for an extended period of time in the hopes of putting pressure on the vendor. Here's some more info:
Over the past year, the most resounding suggestion from our Zero Day Initiative researchers was to add more transparency to our program by publishing the pipeline of vendors with pending zero day vulnerabilities.
The following is a list of vulnerabilities discovered by researchers enrolled in the Zero Day Initiative that have yet to be publicly disclosed. The affected vendor has been contacted on the specified date and while they work on a patch for these vulnerabilities, TippingPoint customers are protected from exploitation by IPS filters delivered ahead of public disclosure.
Check it out:
http://www.zerodayinitiative.com/upcoming_advisories.htmlDon