Skip to content

Commit

Permalink
Update SECURITY.md
Browse files Browse the repository at this point in the history
Make sure it is clear to report a vulnerability directly through Github.
  • Loading branch information
ticheler authored Feb 9, 2024
1 parent dca00bc commit e75ea4e
Showing 1 changed file with 3 additions and 3 deletions.
6 changes: 3 additions & 3 deletions SECURITY.md
Original file line number Diff line number Diff line change
Expand Up @@ -2,7 +2,7 @@

The GeoNetwork community takes the security of the software and all services based on the software product seriously. On this page you can find the versions for which the community provides security patches.

If you believe you have found a security vulnerability in the software or an implementation of the software, please report it to [email protected] as described below. Do not publish the vulnerability in any public forums (such as Twitter/X, email list or issue tracker).
If you believe you have found a security vulnerability in the software or an implementation of the software, please report it [here](https://github.com/geonetwork/core-geonetwork/security/advisories/new) as described below. Do not publish the vulnerability in any public forums (such as Twitter/X, email list or issue tracker).

## Supported Versions

Expand All @@ -23,8 +23,8 @@ If your organisation is making use of a GeoNetwork version that is no longer in

If you encounter a security vulnerability in GeoNetwork please take care to report in a responsible fashion:

* Keep exploit details out of mailing list and issue tracker (send details to the Project Steering Committee via [email protected])
* Keep exploit details out of mailing list and issue tracker (instead provide details to the Project Steering Committee via the GitHub [Report a vulnerability](https://github.com/geonetwork/core-geonetwork/security/advisories/new) option link at the top of this page or send an email to [email protected])
* Be prepared to work with community members on a solution
* Keep in mind community members are volunteers and an extensive fix may require fundraising / resources
* Keep in mind that community members are volunteers and an extensive fix may require fundraising / resources

For more information see [How to contribute](https://github.com/geonetwork/core-geonetwork/wiki/How-to-contribute).

0 comments on commit e75ea4e

Please sign in to comment.