Should all kernel patches for CPU bugs be unconditionally enabled? Vs Performance vs Applicability

A post was merged into an existing topic: Whonix vulerable due to missing processor microcode packages? spectre / meltdown / retpoline / L1 Terminal Fault (L1TF)