Any security advisories for this project will be published on the Security tab on GitHub.
If you discover a vulnerability please report this as soon as possible using the Report a vulnerability button on the Security tab.
Please include:
- As much detail as possible about the vulnerability and how to exploit it.
- Any proof of concept code.
- Details of any workaround you are aware of to mitigate the vulnerability.
- Details of any proposed fix, if you have one.
- A proposed CVSSv3.1 score (with vectors) (See FIRST's CVSSv3.1 Calculator).
- Details of if and how you would like to be credited with the discovery - we will accept a Name, GitHub username or email address.