Skip to content

Commit 2fde571

Browse files
authored
Update Security Policy to use GitHub for reports
1 parent 9cbe889 commit 2fde571

File tree

1 file changed

+2
-3
lines changed

1 file changed

+2
-3
lines changed

SECURITY.md

Lines changed: 2 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -11,9 +11,8 @@ The 1.4.x version is actively maintained.
1111

1212
## Reporting a Vulnerability
1313

14-
If you have identified a security issue, ask on the [XStream mailing list](https://groups.google.com/group/xstream-user)
15-
for access to the XStream Security list and you will receive an invitation. Send a security report there with details to
16-
reproduce the problem with the latest XStream version.
14+
If you have identified a security issue, please open a [new private security advisory](https://github.com/x-stream/xstream/security/advisories/new).
15+
Provide there all details to reproduce the problem with the latest XStream version.
1716

1817
Note, that XStream cares about security issues with XStream itself or in combination with the Java runtime, but not with
1918
3rd party libraries. It is in the resposibility of each developer who brings those libraries together to setup the

0 commit comments

Comments
 (0)