collectiveidea / audited

Audited (formerly acts_as_audited) is an ORM extension that logs all changes to your Rails models.
MIT License
3.34k stars 645 forks source link

Security Reports #672

Closed htrgouvea closed 1 year ago

htrgouvea commented 1 year ago

Hi folks!

Can you enable security report functionality in this repository? I would like to send some questions and I believe they need to be kept private until final formatting.

https://docs.github.com/en/code-security/security-advisories/repository-security-advisories/configuring-private-vulnerability-reporting-for-a-repository

Thanks!

danielmorrison commented 1 year ago

Done.

htrgouvea commented 1 year ago

Hi @danielmorrison, I opened the report but for some reason you don't have access. The people with access are not answering me there. You can verify?

danielmorrison commented 1 year ago

I see it. I'm new to Github Security Advisories but am taking a look.

htrgouvea commented 1 year ago

If you can request a CVE for this Advisory, I would be very grateful. Thanks!