ebics-java / ebics-java-client

Java open source EBICS client - Support for French, German and Swiss banks
GNU Lesser General Public License v2.1
36 stars 35 forks source link

Contact for vulnerability disclosure #30

Closed ncsc-ch-vuln-mgmt closed 2 years ago

ncsc-ch-vuln-mgmt commented 2 years ago

At the Swiss NCSC (National Cybersecurity Center), we have received information about a potential vulnerability in this library, as we did not find any suitable security contact, @uwemaurer please reach out to us via vulnerability[@]ncsc.ch at your earliest convenience so we can share details and mitigation recommendations.

uwemaurer commented 2 years ago

I contacted you via this email you provided

ncsc-ch-vuln-mgmt commented 2 years ago

Thanks, we sent back a detailed report.

mkurz commented 2 years ago

@uwemaurer Please give an update when the vulnerability got fixed, thanks!