The kernel, however, can and does have bugs. I've seen several thousand hosts get taken down with a perfectly correct eBPF program due to a buggy kernel.
Not so much (eBPF VM bugs are pretty rare, as you'd expect, since the VM is very simple) --- you're much more likely to run into bugs in the C-code helpers the kernel exports. If you're malicious, you can also hit verifier bugs that'll give your eBPF code raw pointers, but I don't think you're likely to stumble on them accidentally.
Btw, we all, save maybe a few enlightened ones, have negativity to reflect on. Probably the enlightened ones do too. The goal isn't to get rid of negativity—that's would be setting the bar far too high. We just want to prevent negative swipes from making it into the comments here. You can take care of that via the 'edit' link after you post; that's what I do. You can also set 'delay' in your profile if you want time to review your comment before it gets seen; I do that too.