francoisjacquet / rosariosis

RosarioSIS Student Information System for school management.
https://www.rosariosis.org
GNU General Public License v2.0
505 stars 347 forks source link

I found a security issue. #291

Closed manuel-sommer closed 9 months ago

manuel-sommer commented 9 months ago

Hi,

could you please merge https://github.com/francoisjacquet/rosariosis/pull/290 as I found a security issue. I would like to submit it safely.

manuel-sommer commented 9 months ago

Please also enable "private vulnerability reporting": grafik

manuel-sommer commented 9 months ago

I retested it, but I can't reproduce the issue. Still, you can enable the way to report safely a security recommendation

francoisjacquet commented 8 months ago

Hello @manuel-sommer

Please read https://github.com/francoisjacquet/rosariosis/issues/252 and open issues at GitLab (you can open confidential issues there).