FlowCMS takes security seriously. We appreciate your efforts to responsibly disclose any vulnerabilities you find.
Only the latest version running on main branch / production deployment is currently supported with security updates.
| Version | Supported |
|---|---|
main |
✅ |
Please do not report security vulnerabilities through public GitHub issues.
Instead, please report security vulnerabilities privately using GitHub Security Advisories:
- Go to the repository's Security Advisories tab.
- Click Report a vulnerability.
- Fill out the report form with details about the vulnerability, reproduction steps, and impact.
- A description of the issue and its potential impact.
- Clear reproduction steps or proof-of-concept (PoC) code.
- Any suggested mitigations or fixes.
- We will acknowledge receipt of your report promptly.
- We will investigate and validate the issue.
- Once fixed, we will publish an update and credit you if desired.
Thank you for keeping FlowCMS secure!