Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Appearance settings

Security: WeenSpace/ween-core

Security

SECURITY.md

Security Policy

Warning

DO NOT report security vulnerabilities using a public GitHub issue.

If you believe you've found a security issue, please contact us through one of the following methods:

Whichever method you choose, you will be credited as the reporter once the announcement is published.

Guidelines

A report must include:

  • A clear description of the issue
  • Reproduction steps that allow us to verify the behavior
  • Affected version(s) and environment details (versions, OS, tools, configurations)
  • Let us know if you are willing to review the patches before their publication

Reports that lack these elements may be considered incomplete and may be closed without follow-up, reports may also be closed if the submitter does not engage to follow-ups.

Automated Reports

We do not accept:

  • Low-effort or automatically generated reports (including AI-generated content)
  • Reports that are bulk-submitted without context or verification
  • Reports that are not addressing feedback or questions

You should:

  • Clearly disclose if you used AI to create the vulnerability report. This ensures transparency and accountability.
  • Explicitly confirm that you manually verified the findings and the contents. Reports that were not manually verified may be get rejected without follow-ups.

No Monetary Rewards

We do not have a bounty program in place, so we cannot offer monetary rewards for any reported problems.

Supported Versions

The following releases of Saleor are currently supported.

Version Supported
≥ 3.20
< 3.20

There aren't any published security advisories

Morty Proxy This is a proxified and sanitized view of the page, visit original site.