Added security policy.

This commit is contained in:
Maryna Herasimovich 2024-08-28 20:51:54 -07:00 committed by Roman Arutyunyan
parent e73ac62294
commit 3b16b46aae

20
SECURITY.md Normal file
View File

@ -0,0 +1,20 @@
# Security Policy
## Latest Versions
We advise users to run the most recent mainline or stable release of nginx.
## Reporting a Vulnerability
Please report any vulnerabilities via one of the following methods
(in order of preference):
1. [Report a vulnerability](https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing-information-about-vulnerabilities/privately-reporting-a-security-vulnerability)
within this repository. We are using the Github workflow that allows us to
manage vulnerabilities in a private manner and to interact with reporters
securely.
2. [Report directly to F5](https://www.f5.com/services/support/report-a-vulnerability).
3. Report via email to security-alert@nginx.org.
This method will be deprecated in the future.