more details for reporting an issue

This commit is contained in:
Grant Limberg 2023-03-06 12:39:27 -08:00
parent 1605571a70
commit 57bb7ba4b4
No known key found for this signature in database
GPG key ID: 8F2F97D3BE8D7735

View file

@ -20,6 +20,19 @@ The following versions of ZeroTier one receive security updates
Instead, please report vulerabilities via email to security@zerotier.com. If possible,
please encrypt with our PGP key (see below).
Please include the following information, or as much as you can provide to help us
understand the nature and scope of the issue:
* Type of issue (e.g. buffer overflow, SQL injection, cross-site scripting, etc.)
* Full paths of source file(s) related to the manifestation of the issue
* The location of the affected source code (tag/branch/commit or direct URL)
* Any special configuration required to reproduce the issue
* Step-by-step instructions to reproduce the issue
* Proof-of-concept or exploit code (if possible)
* Impact of the issue, including how an attacker might exploit the issue
## Preferred Languages
We prefer all communications to be in English.