leokhoa / laragon

Laragon is a portable, isolated, fast & powerful universal development environment for PHP, Node.js, Python, Java, Go, Ruby. It is fast, lightweight, easy-to-use and easy-to-extend.
https://laragon.org
4.23k stars 357 forks source link

Security vulnerability disclosure #613

Open kazet opened 7 months ago

kazet commented 7 months ago

Hello,

CERT PL found a security vulnerability in this repository. How can we report this privately? We don't see any security policy describing how such vulnerabilities should be reported.

rdggithub commented 6 months ago

Was this solved somehow?

TheOldMan2000 commented 5 months ago

This report should have been treated a lot better.