Skip to content

Security: SameOldNick/SameOldWebsite

SECURITY.md

Security Policy

Reporting a Vulnerability

First, ensure you're using the latest packages from the Composer package manager using the composer update command to update them.

Next, ensure the security issue is with Same Old Website itself and not with any packages it uses. If it is with another package, the table below lists where to report the vulnerability:

Package Link
PHP https://wiki.php.net/security
Laravel https://laravel.com/docs/8.x/contributions#security-vulnerabilities
NodeJS https://nodejs.org/en/about/security-reporting
TypeScript https://github.com/microsoft/TypeScript/wiki/SECURITY
React https://github.com/facebook/react/security
Vite https://github.com/vitejs/vite/security

Reporting a Vulnerability

If you're sure the vulnerability is caused by Same Old Website, open an issue and include the following:

  • Who the vulnerability affects.
  • What the security vulnerability is.
  • Where the security vulnerability exists.
  • Why this is considered a security vulnerability and not a bug or feature.
  • When the security vulnerability was discovered and when it should be fixed.
  • How can this security vulnerability be fixed.

There aren't any published security advisories