ponzu-cms / ponzu

Headless CMS with automatic JSON API. Featuring auto-HTTPS from Let's Encrypt, HTTP/2 Server Push, and flexible server framework written in Go.
https://docs.ponzu-cms.org
BSD 3-Clause "New" or "Revised" License
5.68k stars 387 forks source link

Advisory from Netsparker - Ponzu CMS - 0.9.4 #294

Closed DanielBishtawi closed 5 years ago

DanielBishtawi commented 5 years ago

Hello,

While testing the Netsparker web application security scanner we identified vulnerabilities in Ponzu CMS. Can you please advise whom shall we contact to disclose the vulnerability details so it can be fixed?

Please email me at daniel@netsparker.com for the technical details.

Looking forward to hearing from you.

Regards,

Daniel Bishtawi Marketing Administrator | Netsparker Web Application Security Scanner

nilslice commented 5 years ago

Emailed. Thank you!