Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Publishing possible security issues #805

Open
fuzzah opened this issue May 30, 2024 · 2 comments
Open

Publishing possible security issues #805

fuzzah opened this issue May 30, 2024 · 2 comments

Comments

@fuzzah
Copy link

fuzzah commented May 30, 2024

Greetings!
I have previously reported some issues which might be security-related (sent them to the e-mail mentioned in the security policy), but still no reply.

The message was sent on April 9, 2024 from the address v.korolyov@gardatech.ru.
Was it overlooked by any chance?

If these issues are not considered security-related, then I'd like to report them here on github if that's okay.

@perlpunk
Copy link
Member

Hi, I've just enabled private vulnerability reporting for this repo: https://github.com/yaml/pyyaml/security
Please report anything security related there, thanks.
I think I am on the recipients list for the security policy email address but I didn't receive anything.

@fuzzah
Copy link
Author

fuzzah commented Jun 10, 2024

@perlpunk , thank you!
It's been almost 2 weeks since I reported it as a GHSA.
Now may I kindly ask for someone on the PyYAML team to actually review it? 😿

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants