Movatterモバイル変換


[0]ホーム

URL:


Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

Loop in project maintainers before publishing advisories reported by third parties#4325

AkihiroSuda started this conversation inIdeas
Discussion options

Currently, some advisories seem published without looping in project maintainers.

This is problematic because an advisory submitted by a third party may contain misunderstanding and may result in sending false alerts to users.
In the worst case, an advisory may also contain malicious suggestion that will rather decrease the security.

I'd suggest GitHub to make some attempt to loop in project maintainers before publishing advisories.
This will be also beneficial to reduce zero-day attacks.

You must be logged in to vote

Replies: 0 comments

Sign up for freeto join this conversation on GitHub. Already have an account?Sign in to comment
Category
Ideas
Labels
None yet
1 participant
@AkihiroSuda

[8]ページ先頭

©2009-2025 Movatter.jp