Skip to content

Security: candywon/webrouter

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in WebRouter, please report it privately before disclosing it publicly.

Contact: candywon@qq.com

Please include:

  • Description of the vulnerability
  • Steps to reproduce
  • Affected versions
  • Any potential impact

Response Timeline

  • 24 hours: Initial acknowledgment
  • 7 days: Investigation and fix (if applicable)
  • 30 days: Public disclosure coordinated

Scope

Security issues include, but are not limited to:

  • Authentication bypass
  • Data leakage
  • Remote code execution
  • SQL injection
  • Cross-site scripting (XSS)

Supported Versions

Version Supported
latest Yes
older No

There aren't any published security advisories