Updated security policy report methods

This commit is contained in:
Sergey Kandaurov
2026-07-22 14:47:33 +04:00
committed by Sergey Kandaurov
parent 95a24d1b9c
commit ad8c94a635
+2 -12
View File
@@ -6,18 +6,8 @@ implications of configurations and misconfigurations.
## Reporting a Vulnerability
Please report any vulnerabilities via one of the following methods
(in order of preference):
1. [Report a vulnerability](https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing-information-about-vulnerabilities/privately-reporting-a-security-vulnerability)
within this repository. We are using the GitHub workflow that allows us to
manage vulnerabilities in a private manner and interact with reporters
securely.
2. [Report directly to F5](https://www.f5.com/services/support/report-a-vulnerability).
3. Report via email to security-alert@nginx.org.
This method will be deprecated in the future.
Please report any vulnerabilities
[directly to F5](https://www.f5.com/services/support/report-a-vulnerability).
### Vulnerability Disclosure and Fix Process