📝 Update Security report

Signed-off-by: Daniel <845765@qq.com>
This commit is contained in:
Daniel
2026-04-11 22:55:13 +08:00
parent 051b06997a
commit 6808c3bd2d

1
.github/SECURITY.md vendored
View File

@@ -7,6 +7,7 @@ https://github.com/siyuan-note/siyuan/security/advisories/new
Some areas we don't consider security vulnerabilities:
* Arbitrary file write: Writing files outside the workspace path (e.g., exporting files) is a common user need
* Chart/Formula/ABC rendering code injection: This is a common user need, for details please refer to https://github.com/siyuan-note/siyuan/pull/6917
* SQL injection
Thank you very much!