-
Notifications
You must be signed in to change notification settings - Fork 423
please help the jq project add GHSA-8mxc-vqrq-gcm8 to their Security Notices #5385
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Comments
Hi @eslerm, there isn't a procedure for retroactively adding a global advisory to a repository. However, the maintainers of |
No, they just need someone with sufficient privileges to create an advisory. Private Vulnerability Reporting is a tool for researchers, rather than maintainers, to create a private repo GHSA to enable coordinated vulnerability disclosure. |
Thanks @shelbyc iiuc, either a |
Hi Github Advisory Curation Team,
Could you please assist
jq
in adding GHSA-8mxc-vqrq-gcm8 to their Security tab? Upstream is interested: jqlang/jq#3296 (comment)ref: https://github.com/github/advisory-database/blob/main/advisories/unreviewed/2025/02/GHSA-8mxc-vqrq-gcm8/GHSA-8mxc-vqrq-gcm8.json
The text was updated successfully, but these errors were encountered: