You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Currently we support versions 2.x.x of MQTTNIO. These will receive security updates as and when needed.
6
+
7
+
## Reporting a Vulnerability
8
+
9
+
If you believe you have found a security vulnerability in MQTTNIO please do not post this in a public forum, do not create a GitHub Issue. Instead you should email [security@soto.codes](mailto:security@soto.codes) with details of the issue.
10
+
11
+
#### What happens next?
12
+
13
+
* A member of the team will acknowledge receipt of the report within 5
14
+
working days. This may include a request for additional
15
+
information about reproducing the vulnerability.
16
+
* We will privately inform the Swift Server Work Group ([SSWG][sswg]) of the
17
+
vulnerability within 10 days of the report as per their [security
18
+
guidelines][sswg-security].
19
+
* Once we have identified a fix we may ask you to validate it. We aim to do this
20
+
within 30 days, but this may not always be possible.
21
+
* We will decide on a planned release date and let you know when it is.
22
+
* Once the fix has been released we will publish a security advisory on GitHub
23
+
and the [SSWG][sswg] will announce the vulnerability on the [Swift
0 commit comments