Merge pull request #4618 from radiantwave/patch-1

Remove huntr from SECURITY.md
This commit is contained in:
Dan Brown 2023-10-19 16:50:30 +01:00 committed by GitHub
commit c513cdaebe
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

15
.github/SECURITY.md vendored
View File

@ -15,18 +15,13 @@ If you'd like to be notified of new potential security concerns you can [sign-up
If you've found an issue that likely has no impact to existing users (For example, in a development-only branch) If you've found an issue that likely has no impact to existing users (For example, in a development-only branch)
feel free to raise it via a standard GitHub bug report issue. feel free to raise it via a standard GitHub bug report issue.
If the issue could have a security impact to BookStack instances, please use one of the below If the issue could have a security impact to BookStack instances,
methods to report the vulnerability: please directly contact the lead maintainer [@ssddanbrown](https://github.com/ssddanbrown).
You will need to login to be able to see the email address on the [GitHub profile page](https://github.com/ssddanbrown).
- Directly contact the lead maintainer [@ssddanbrown](https://github.com/ssddanbrown). Alternatively you can send a DM via Twitter to [@ssddanbrown](https://twitter.com/ssddanbrown).
- You will need to login to be able to see the email address on the [GitHub profile page](https://github.com/ssddanbrown).
- Alternatively you can send a DM via Twitter to [@ssddanbrown](https://twitter.com/ssddanbrown).
- [Disclose via huntr.dev](https://huntr.dev/bounties/disclose)
- Bounties may be available to you through this platform.
- Be sure to use `https://github.com/BookStackApp/BookStack` as the repository URL.
Please be patient while the vulnerability is being reviewed. Deploying the fix to address the vulnerability Please be patient while the vulnerability is being reviewed. Deploying the fix to address the vulnerability
can often take a little time due to the amount of preparation required, to ensure the vulnerability has can often take a little time due to the amount of preparation required, to ensure the vulnerability has
been covered, and to create the content required to adequately notify the user-base. been covered, and to create the content required to adequately notify the user-base.
Thank you for keeping BookStack instances safe! Thank you for keeping BookStack instances safe!