pm2
pm2 copied to clipboard
Security concern
Hello 👋
I run a security community that finds and fixes vulnerabilities in OSS. A researcher (@vovikhangcdv) has found a potential issue, which I would be eager to share with you.
Could you add a SECURITY.md file with an e-mail address for me to send further details to? GitHub recommends a security policy to ensure issues are responsibly disclosed, and it would help direct researchers in the future.
Looking forward to hearing from you 👍
(cc @huntr-helper)
contact AT keymetrics DOT io
@Unitech - appreciate your response and diligence 👍
I've just sent an e-mail to the address, but for reference as well, the report can be found here: https://huntr.dev/bounties/9a5fc881-0855-492e-b9cf-ab49c1fbca5f/
The e-mail link will allow you to view the report without having to sign-up, or you can sign-up and get instant access - up to you :)