opencats / OpenCATS

Applicant Tracking System (maintained code base)
http://www.opencats.org
Other
476 stars 236 forks source link

Security concern #574

Closed JamieSlome closed 1 year ago

JamieSlome commented 1 year ago

Hello 👋

I run a security community that finds and fixes vulnerabilities in OSS. A researcher (@0xcybery) has found a potential issue, which I would be eager to share with you.

Could you add a SECURITY.md file with an e-mail address for me to send further details to? GitHub recommends a security policy to ensure issues are responsibly disclosed, and it would help direct researchers in the future.

Looking forward to hearing from you 👍

(cc @huntr-helper)

RussH commented 1 year ago

HI @JamieSlome @0xCyberY Have added the security.md file - please follow the guidance there. I look forward to some constructive security improvements!

JamieSlome commented 1 year ago

@RussH - thanks, we will get all of the reports sent over to you shortly :)

RussH commented 1 year ago

Closed - see security release https://github.com/opencats/OpenCATS/releases/tag/v0.9.7.2