Please use the latest version of ore-kernel whenever possible. We provide security updates for the following versions:
| Version | Supported |
|---|---|
| v0.1.x | ✅ |
| < 0.1.0 | ❌ |
Security is a top priority for the ore-kernel project. We deeply appreciate the security research community and their efforts in identifying and reporting vulnerabilities.
Please do not report security vulnerabilities through public GitHub issues, discussions, or pull requests.
Instead, please report them by emailing mahavishnu005sk@gmail.com.
To help us investigate the issue as quickly and efficiently as possible, please include the following information in your report:
- Description: A clear description of the vulnerability and its impact.
- Steps to Reproduce: Detailed, step-by-step instructions to reproduce the issue. Include any relevant code snippets, logs, or configuration files.
- Proof of Concept: If possible, provide a minimal Proof of Concept (PoC) demonstrating the vulnerability.
- Environment Details: Include the version of ore-kernel you are using, your operating system, and any other relevant environment variables.
- We will acknowledge receipt of your vulnerability report within 48 hours.
- We will send you regular updates about our progress.
- If your report is accepted, we will work with you to understand the issue and develop a fix.
- We will notify you when the fix is applied and released.
- With your permission, we will credit you for discovering the vulnerability in our release notes and advisory.
Thank you for helping keep ore-kernel and its users safe!