Skip to content

Commit 26daf67

Browse files
committed
Add CVE ID information
1 parent 4a3558a commit 26daf67

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

content/security/security.txt

+2
Original file line numberDiff line numberDiff line change
@@ -35,6 +35,8 @@ We will send you a response as soon as possible and will keep you informed on ou
3535
Please do *not* write to us publicly, e.g. in the forum, on Discord or in a GitHub issue. A public report can give attackers valuable time to exploit the issue before it is fixed.
3636

3737
By letting us know directly and coordinating the disclosure with us, you can help to protect other Kirby users from such attacks.
38+
39+
Also please do *not* request a CVE ID from organizations like MITRE. The responsible CVE Numbering Authority (CNA) for Kirby is GitHub. We can and will request a CVE ID for each confirmed vulnerability and will provide it to you in advance of the coordinated release.
3840
</warning>
3941

4042
----

0 commit comments

Comments
 (0)