mirror of
https://github.com/nginx/nginx.git
synced 2026-09-03 20:53:04 -05:00
Updated security policy report methods
This commit is contained in:
committed by
Sergey Kandaurov
parent
95a24d1b9c
commit
ad8c94a635
+2
-12
@@ -6,18 +6,8 @@ implications of configurations and misconfigurations.
|
||||
|
||||
## Reporting a Vulnerability
|
||||
|
||||
Please report any vulnerabilities via one of the following methods
|
||||
(in order of preference):
|
||||
|
||||
1. [Report a vulnerability](https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing-information-about-vulnerabilities/privately-reporting-a-security-vulnerability)
|
||||
within this repository. We are using the GitHub workflow that allows us to
|
||||
manage vulnerabilities in a private manner and interact with reporters
|
||||
securely.
|
||||
|
||||
2. [Report directly to F5](https://www.f5.com/services/support/report-a-vulnerability).
|
||||
|
||||
3. Report via email to security-alert@nginx.org.
|
||||
This method will be deprecated in the future.
|
||||
Please report any vulnerabilities
|
||||
[directly to F5](https://www.f5.com/services/support/report-a-vulnerability).
|
||||
|
||||
### Vulnerability Disclosure and Fix Process
|
||||
|
||||
|
||||
Reference in New Issue
Block a user