A hallmark of OpenInfra Projects is that they're community maintained, so each project's community has its own workflows and processes for reporting suspected vulnerabilities. If you believe you've found a security vulnerability in any OpenInfra Project or affiliated effort, please follow the corresponding link below to that community's reporting instructions.

Reporting a Vulnerability

Join the OpenInfra Foundation to learn how you can get involved in initiatives around open infrastructure.
JOIN