forked from community-scripts/ProxmoxVE
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Create SECURITY.md (community-scripts#179)
* Create SECURITY.md * Update SECURITY.md
- Loading branch information
Showing
1 changed file
with
22 additions
and
0 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,22 @@ | ||
## Supported Versions | ||
This project currently supports the following versions of Proxmox VE: | ||
|
||
| Version | Supported | | ||
| ------- | ------------------ | | ||
| 8.2.x | :white_check_mark: | | ||
| 8.1.x | :white_check_mark: | | ||
| 8.0.x | Limited support* ❕| | ||
| < 8.0 | :x: | | ||
|
||
*Version 8.0.x has limited support. Security updates may not be provided for all issues in this version. | ||
|
||
## Reporting a Vulnerability | ||
|
||
Security vulnerabilities shouldn’t be reported publicly to prevent potential exploitation. Instead, please report any vulnerabilities privately by reaching out directly to us. You can either join our [Discord server](https://discord.gg/UHrpNWGwkH) and send a direct message to a maintainer or contact us via email at [email protected]. Be sure to include a detailed description of the vulnerability and the steps to reproduce it. Thank you for helping us keep our project secure! | ||
|
||
Once a vulnerability has been reported, the project maintainers will review it and acknowledge the report within 7 business days. We will then work to address the vulnerability and provide a fix as soon as possible. Depending on the severity of the issue, a patch may be released immediately or included in the next scheduled update. | ||
|
||
Please note that not all reported vulnerabilities may be accepted. The project maintainers reserve the right to decline a vulnerability report if it is deemed to be a low-risk issue or if it conflicts with the project's design or architecture. In such cases, we will provide an explanation for the decision. | ||
|
||
If you have any questions or concerns about this security policy, please don't hesitate to contact the project maintainers. | ||
|