- Notifications
You must be signed in to change notification settings - Fork2.6k
Security: nrwl/nx
Security
SECURITY.md
Nx/Nrwl takes the security of our software products and services seriously, which includes all source code repositories managed through our GitHub organizations.
If you believe you have found a security vulnerability in any Nx-owned repository that meets Nx's definition of a security vulnerability, please report it to us as described below.
Please do not report security vulnerabilities through public GitHub issues.
Instead, please report them to the Security Team atsecurity@nrwl.io.
You should receive a response within 24 hours. If for some reason you do not, please follow up via email to ensure we received your original message.
Nx follows the principle of Coordinated Vulnerability Disclosure.
- Malicious versions of Nx and some supporting plugins were publishedGHSA-cxm3-wv7p-598c published
Aug 27, 2025 byFrozenPandazCritical
Learn more about advisories related tonrwl/nx in theGitHub Advisory Database