Skip to content

Security: ubuntu/ubuntu-mediawiki-extension

Security

SECURITY.md

Security policy

This document outlines security procedures and policies for the Ubuntu Wiki extension.

Supported versions

Only the latest version of the Ubuntu Wiki extension is supported with security updates. Security updates are not backported to older versions.

Reporting a vulnerability

If you discover a security vulnerability within this repository, we encourage responsible disclosure.

Private vulnerability reporting

The most straightforward way to report a security vulnerability is via GitHub. For detailed instructions, please review the Privately reporting a security vulnerability documentation. This method enables you to communicate vulnerabilities directly and confidentially with the maintainers of this repo.

The project's admins will be notified of the issue and will work with you to determine whether the issue qualifies as a security issue and, if so, in which component. We will then handle figuring out a fix, getting a CVE assigned and coordinating the release of the fix to the various Linux distributions.

The Ubuntu Security disclosure and embargo policy contains more information about what you can expect when you contact us, and what we expect from you.

Steps to report a vulnerability

  1. Go to the Security Advisories Page of the repository.
  2. Click "Report a Vulnerability."
  3. Provide detailed information about the vulnerability, including steps to reproduce, affected versions, and potential impact.

Security Resources

There aren't any published security advisories