We release patches for security vulnerabilities. Which versions are eligible for receiving such patches depends on the CVSS v4.0 Rating:
CVSS | Supported versions |
---|---|
9 - 10 | Releases within the previous three months |
4 - 8.9 | Most recent release |
Please report (suspected) security vulnerabilities via Github private vulnerability reporting. You will receive a response in a few days. If the issue is confirmed, we will release a patch as soon as possible depending on complexity.