Skip to content

Commit e75ea4e

Browse files
authored
Update SECURITY.md
Make sure it is clear to report a vulnerability directly through Github.
1 parent dca00bc commit e75ea4e

File tree

1 file changed

+3
-3
lines changed

1 file changed

+3
-3
lines changed

SECURITY.md

+3-3
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@
22

33
The GeoNetwork community takes the security of the software and all services based on the software product seriously. On this page you can find the versions for which the community provides security patches.
44

5-
If you believe you have found a security vulnerability in the software or an implementation of the software, please report it to [email protected] as described below. Do not publish the vulnerability in any public forums (such as Twitter/X, email list or issue tracker).
5+
If you believe you have found a security vulnerability in the software or an implementation of the software, please report it [here](https://github.com/geonetwork/core-geonetwork/security/advisories/new) as described below. Do not publish the vulnerability in any public forums (such as Twitter/X, email list or issue tracker).
66

77
## Supported Versions
88

@@ -23,8 +23,8 @@ If your organisation is making use of a GeoNetwork version that is no longer in
2323

2424
If you encounter a security vulnerability in GeoNetwork please take care to report in a responsible fashion:
2525

26-
* Keep exploit details out of mailing list and issue tracker (send details to the Project Steering Committee via [email protected])
26+
* Keep exploit details out of mailing list and issue tracker (instead provide details to the Project Steering Committee via the GitHub [Report a vulnerability](https://github.com/geonetwork/core-geonetwork/security/advisories/new) option link at the top of this page or send an email to [email protected])
2727
* Be prepared to work with community members on a solution
28-
* Keep in mind community members are volunteers and an extensive fix may require fundraising / resources
28+
* Keep in mind that community members are volunteers and an extensive fix may require fundraising / resources
2929

3030
For more information see [How to contribute](https://github.com/geonetwork/core-geonetwork/wiki/How-to-contribute).

0 commit comments

Comments
 (0)