userfrosting / UserFrosting

Modern PHP user login and management framework
https://www.userfrosting.com
Other
1.64k stars 366 forks source link

Trying to get in touch regarding a security issue #1173

Closed zidingz closed 3 years ago

zidingz commented 3 years ago

Hi there,

I couldn't find a SECURITY.md in your repository and am not sure how to best contact you privately to disclose a security issue.

Can you add a SECURITY.md file with an e-mail to your repository, so that our system can send you the vulnerability details? GitHub suggests that a security policy is the best way to make sure security issues are responsibly disclosed.

Once you've done that, you should receive an e-mail within the next hour with more info.

Thanks! (cc @huntr-helper)

lcharette commented 3 years ago

I'll see to add SECURITY.md when I get a chance. Meanwhile, you can reach me, @alexweissman or @Silic0nS0ldier in chat.

lcharette commented 3 years ago

Done : https://github.com/userfrosting/UserFrosting/blob/master/.github/SECURITY.md