hnhx / librex

Framework and javascript free privacy respecting meta search engine
GNU Affero General Public License v3.0
782 stars 93 forks source link

Security contact #276

Open mal-tee opened 8 months ago

mal-tee commented 8 months ago

Hello maintainer(s),

I am a security researcher from the Institute of Application Security at TU Braunschweig, Germany. We discovered a (potential) security vulnerability in your project.

We would like to report this vulnerability to you in a responsible and ethical manner. Therefore, we do not want to disclose any details of the vulnerability publicly until you have had a chance to review and fix it.

Could you please let us know your prefered way of receiving security reports?

You can contact us at ias-disclosure@tu-braunschweig.de or by replying to this issue.

Thank you for your attention and cooperation.

codedipper commented 8 months ago

This project (hnhx/librex) is no longer being actively developed. Me and several other developers have started a fork from this codebase at Ahwxorg/LibreY. Please let us know about this issue because we might also be vulnerable and so we can make a fix available! You can contact the main developer through matrix or email, which is available on our security policy over on our repo.