Open pshiu opened 1 year ago
A security vulnerability was disclosed publicly on Discourse instead of privately via email.
We discovered this after someone helpfully sent us an email that such a post was made:
https://groups.google.com/a/openedx.org/g/security/c/JPTv43gvXo8
This issue is to add reminders on discuss.openedx.org of where to appropriately report security concerns or vulnerabilities.
Ideas for where to put the reminders:
Guidelines
Welcome message:
Next steps:
A security vulnerability was disclosed publicly on Discourse instead of privately via email.
We discovered this after someone helpfully sent us an email that such a post was made:
https://groups.google.com/a/openedx.org/g/security/c/JPTv43gvXo8
This issue is to add reminders on discuss.openedx.org of where to appropriately report security concerns or vulnerabilities.