cube-js / cube-js/cube

🚨 Please Enable GitHub Security Advisories

Open
#11,670 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Rust
Stars
20.8k
Forks
2.1k
Avg merge
1d 2h
Merged PRs (30d)
181

Description

Hello,

I'm a Staff Security Engineer at @braze-inc. I believe I may have found a security vulnerability in this project.

Would you be so kind as to enable [GitHub Security Vulnerability Reporting](https://docs.github.com/en/code-security/security-advisories/working-with-repository-security-advisories/configuring-private-vulnerability-reporting-for-a-repository) so we can privately discuss the details. This advisory can be opened by a user with admin permissions on this repository.

## Disclosure Policy

**This vulnerability disclosure follows the Open Source Security Foundation's [90-day vulnerability disclosure policy](https://openssf.org/about/vulnerability-disclosure-policy/). Full disclosure will occur either at the end of the 90-day deadline or whenever a patch is made widely available, whichever occurs first. We kindly request a response and confirmation of intention to fix from the maintainer within 21 days of our initial report.**

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.