dcloudio / uni-app

A cross-platform framework using Vue.js
https://uniapp.dcloud.io
Apache License 2.0
40.15k stars 3.63k forks source link

Trying to get in touch regarding a security issue #2865

Open zidingz opened 3 years ago

zidingz commented 3 years ago

Hey there!

I'd like to report a security issue but cannot find contact instructions on your repository.

If not a hassle, might you kindly add a SECURITY.md file with an email, or another contact method? GitHub recommends this best practice to ensure security issues are responsibly disclosed, and it would serve as a simple instruction for security researchers in the future.

Thank you for your consideration, and I look forward to hearing from you!

(cc @huntr-helper)

michaellrowley commented 2 years ago

(脆弱性) Any update on this? The report can be reviewed at https://huntr.dev/bounties/cb8ba285-0484-49b2-8a2b-852e861cdcd6/