Please do not report security vulnerabilities through public GitHub issues.
Instead, report them privately through GitHub Security Advisories, or by email to maheng1991@hotmail.com.
Please include as much of the following as you can, to help triage the report:
- Type of issue (e.g. buffer overflow, injection, cross-site scripting)
- Full paths of the source files related to the issue
- The location of the affected source code (tag, branch, commit, or direct URL)
- Any special configuration required to reproduce the issue
- Step-by-step instructions to reproduce the issue
- Proof-of-concept or exploit code, if available
- Impact of the issue, including how an attacker might exploit it
This is a personal project maintained on a best-effort basis. Expect an initial response within a few days, and please follow up by email if you do not hear back.
All communications in English are preferred.
Reports are handled under Coordinated Vulnerability Disclosure: please give the maintainer a reasonable chance to release a fix before disclosing the issue publicly.