Hi, I found a security vulnerability in Truss related to archive extraction that I would like to report responsibly. Since there is no SECURITY.md or private reporting option set up, could someone point me to a private channel to send the details? Happy to share the full writeup and proof of concept once I have a secure way to send it.
Hi, I found a security vulnerability in Truss related to archive extraction that I would like to report responsibly. Since there is no SECURITY.md or private reporting option set up, could someone point me to a private channel to send the details? Happy to share the full writeup and proof of concept once I have a secure way to send it.