amirsanni / Mini-Inventory-and-Sales-Management-System

An Inventory and Sales Management System written in PHP (codeIgniter) with support for MySQL and Sqlite3 databases
https://1410inc.xyz/mini-inventory-and-sales-management-system/
MIT License
500 stars 268 forks source link

Trying to get in touch regarding a security issue #82

Closed zidingz closed 3 years ago

zidingz commented 3 years ago

Hi there,

I couldn't find a SECURITY.md in your repository and am not sure how to best contact you privately to disclose a security issue.

Can you add a SECURITY.md file with an e-mail to your repository, so that our system can send you the vulnerability details? GitHub suggests that a security policy is the best way to make sure security issues are responsibly disclosed.

Once you've done that, you should receive an e-mail within the next hour with more info.

Thanks! (cc @huntr-helper)

amirsanni commented 3 years ago

SECURITY.md file created.

JamieSlome commented 2 years ago

@amirsanni - would you be able to take a look at this report:

https://huntr.dev/bounties/1d84931c-ee10-4944-9764-d96612cdbc71/

JamieSlome commented 2 years ago

@amirsanni - just wanted to check in one last time on: https://huntr.dev/bounties/1d84931c-ee10-4944-9764-d96612cdbc71/

It has been 3 months since the point of disclosure, and we have not heard anything back from you. We will give it one more week, and then make the disclosure public so that members of your community are able to respond to the potential issue.

Let me know if you have any questions! ❤️