Use this section to tell users about which versions of your project are currently being supported with security updates.
Version | Supported |
---|---|
3.x.x | ✅ |
2.x.x | ✅ |
< 1.x | ❌ |
Please report (suspected) security vulnerabilities to [[email protected]]. You will receive a response from us within 48 hours. After the initial reply, we will keep you informed of the progress towards a fix and full announcement, and may ask for additional information or guidance.
- Email us at [[email protected]] with the vulnerabilities details.
- Include the steps needed to reproduce the bug or details of where the code problem is.
- Provide any special configurations that are required to reproduce the bug.
This section outlines the process for updates related to security.
When a security issue is reported, the maintainers will take the following steps:
- Confirm the problem and determine the affected versions.
- Audit code to find any potential similar problems.
- Prepare fixes for all releases still under maintenance which may include backporting.
Fixes will be released as part of the regular update cycle or as immediate releases, depending on the severity of the issue.