Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Security vulnerability report #12176

Closed
1 task done
pwntester opened this issue Oct 10, 2024 · 1 comment
Closed
1 task done

Security vulnerability report #12176

pwntester opened this issue Oct 10, 2024 · 1 comment
Labels
needs triage Issue needs to be triaged

Comments

@pwntester
Copy link

Astro Info

Hi, I reported a critical security vulnerability in July the 5th via GitHub private vulnerability reporting, but its being ignored so far.

If this issue only occurs in one browser, which browser is a problem?

No response

Describe the Bug

Details in the PVR report.

What's the expected result?

Report is acknowledged and vulnerability gets fixed

Link to Minimal Reproducible Example

https://astro.new/latest/

Participation

  • I am willing to submit a pull request for this issue.
@github-actions github-actions bot added the needs triage Issue needs to be triaged label Oct 10, 2024
@ematipico
Copy link
Member

ematipico commented Oct 10, 2024

Thank you @pwntester

Sorry if we overlooked your report, however we ask you to refrain from creating issues.

You can check here our process: https://github.com/withastro/astro/blob/main/SECURITY.md
And contact the security team on Discord: https://github.com/withastro/astro/blob/main/SECURITY_CONTACTS

I will make sure to contact the security team

@ematipico ematipico closed this as not planned Won't fix, can't repro, duplicate, stale Oct 10, 2024
@withastro withastro locked as resolved and limited conversation to collaborators Oct 10, 2024
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
needs triage Issue needs to be triaged
Projects
None yet
Development

No branches or pull requests

2 participants