mirror of
https://github.com/espocrm/espocrm.git
synced 2026-04-18 12:10:05 +00:00
Update security
This commit is contained in:
1
.github/SECURITY.md
vendored
1
.github/SECURITY.md
vendored
@@ -8,6 +8,7 @@ What reports we do not accept:
|
|||||||
|
|
||||||
- Executing PHP code by an extension or during the installation or upgrade process.
|
- Executing PHP code by an extension or during the installation or upgrade process.
|
||||||
- Exposing contacts though a target list, campaign or mass email, considering the user has access to them.
|
- Exposing contacts though a target list, campaign or mass email, considering the user has access to them.
|
||||||
|
- SSRF in IMAP/SMTP with TOCTOU.
|
||||||
|
|
||||||
## Supported versions
|
## Supported versions
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user