diff --git a/SECURITY.md b/SECURITY.md index 034e848032..92c0187f62 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -2,20 +2,15 @@ ## Supported Versions -Use this section to tell people about which versions of your project are -currently being supported with security updates. +These versions are currently being supported with security updates. | Version | Supported | | ------- | ------------------ | -| 5.1.x | :white_check_mark: | -| 5.0.x | :x: | -| 4.0.x | :white_check_mark: | -| < 4.0 | :x: | +| 3.x | :white_check_mark: | +| 2.x | :white_check_mark: | +| < 2.0 | :x: | ## Reporting a Vulnerability -Use this section to tell people how to report a vulnerability. - -Tell them where to go, how often they can expect to get an update on a -reported vulnerability, what to expect if the vulnerability is accepted or -declined, etc. +To report a security vulnerability, please do not open an issue, as this notifies attackers of the vulnerability. +Instead, please email [fengmk2](mailto:fengmk2+eggjs-security@gmail.com) to disclose.