forked from geonetwork/core-geonetwork
-
Notifications
You must be signed in to change notification settings - Fork 1
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Make sure it is clear to report a vulnerability directly through Github.
- Loading branch information
Showing
1 changed file
with
3 additions
and
3 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -2,7 +2,7 @@ | |
|
||
The GeoNetwork community takes the security of the software and all services based on the software product seriously. On this page you can find the versions for which the community provides security patches. | ||
|
||
If you believe you have found a security vulnerability in the software or an implementation of the software, please report it to [email protected] as described below. Do not publish the vulnerability in any public forums (such as Twitter/X, email list or issue tracker). | ||
If you believe you have found a security vulnerability in the software or an implementation of the software, please report it [here](https://github.com/geonetwork/core-geonetwork/security/advisories/new) as described below. Do not publish the vulnerability in any public forums (such as Twitter/X, email list or issue tracker). | ||
|
||
## Supported Versions | ||
|
||
|
@@ -23,8 +23,8 @@ If your organisation is making use of a GeoNetwork version that is no longer in | |
|
||
If you encounter a security vulnerability in GeoNetwork please take care to report in a responsible fashion: | ||
|
||
* Keep exploit details out of mailing list and issue tracker (send details to the Project Steering Committee via [email protected]) | ||
* Keep exploit details out of mailing list and issue tracker (instead provide details to the Project Steering Committee via the GitHub [Report a vulnerability](https://github.com/geonetwork/core-geonetwork/security/advisories/new) option link at the top of this page or send an email to [email protected]) | ||
* Be prepared to work with community members on a solution | ||
* Keep in mind community members are volunteers and an extensive fix may require fundraising / resources | ||
* Keep in mind that community members are volunteers and an extensive fix may require fundraising / resources | ||
|
||
For more information see [How to contribute](https://github.com/geonetwork/core-geonetwork/wiki/How-to-contribute). |