cognita icon indicating copy to clipboard operation
cognita copied to clipboard

Github Security Lab Vulnerability Report

Open Kwstubbs opened this issue 1 year ago • 2 comments

Greetings Cognita maintainers,

Github has found a potentail vulnerability in Cognita. Please let us know of a point of contact so that we can discuss this privately. We have the Private Vulnerability Reporting feature if you do not have an established point of contact.

Thanks, Kevin

Kwstubbs avatar Aug 15 '24 07:08 Kwstubbs

Hi Kevin! Please share on email to @.*** , @.*** , @.*** and @.***

On Thu, 15 Aug, 2024, 13:05 Kevin Stubbings, @.***> wrote:

Greetings Cognita maintainers,

Github has found a potentail vulnerability in Cognita. Please let us know of a point of contact so that we can discuss this privately. We have the Private Vulnerability Reporting https://docs.github.com/en/code-security/security-advisories/working-with-repository-security-advisories/configuring-private-vulnerability-reporting-for-a-repository feature if you do not have an established point of contact.

Thanks, Kevin

— Reply to this email directly, view it on GitHub https://github.com/truefoundry/cognita/issues/304, or unsubscribe https://github.com/notifications/unsubscribe-auth/ADKJQF5SZW7TPM2Y7VO6ZCLZRRK33AVCNFSM6AAAAABMRXL3ASVHI2DSMVQWIX3LMV43ASLTON2WKOZSGQ3DONJXGE2TCNY . You are receiving this because you are subscribed to this thread.Message ID: @.***>

agutgutia1991 avatar Aug 15 '24 07:08 agutgutia1991

@agutgutia1991 It seems the emails have been censored.

Kwstubbs avatar Aug 16 '24 19:08 Kwstubbs

Hey @Kwstubbs, I have enabled Private Vulnerability Reporting for this repository. You can also reach out to us on [email protected]

chiragjn avatar Aug 22 '24 06:08 chiragjn

I am closing this as we have not heard back. Please feel free to submit via Private Vulnerability Reporting, we'll be happy to address any issues

chiragjn avatar Aug 28 '24 12:08 chiragjn

@chiragjn I have submitted a report in Private Vulnerability Reporting. Can you let me know if you have seen it?

Kwstubbs avatar Oct 22 '24 16:10 Kwstubbs

I have accepted it now, sorry for the delay and again thank you so much for submitting, we'll get them fixed

chiragjn avatar Oct 22 '24 19:10 chiragjn