updated security.md

This commit is contained in:
dashevchenko 2023-05-15 17:59:04 +03:00
parent 1d00e18583
commit 0ffafeb473

View File

@ -12,8 +12,6 @@ Do not report non-security-impacting bugs through this channel. Use GitHub issue
**Proposed Email Content** **Proposed Email Content**
Provide a descriptive subject line and in the body of the email include the following information: Provide a descriptive subject line and in the body of the email include the following information:
Basic identity information, such as your name and your affiliation or company. - Basic identity information, such as your name and your affiliation or company.
Detailed steps to reproduce the vulnerability (POC scripts, screenshots, and compressed packet captures are all helpful to us). - Detailed steps to reproduce the vulnerability (log errors, screenshots are all helpful to us).
Description of the effects of the vulnerability on Thingsboard and the related hardware and software configurations, so that the Thingsboarf Security Team can reproduce it. - Description of the effects of the vulnerability on Thingsboard.
How the vulnerability affects Thingsboard usage and an estimation of the attack surface, if there is one.
List other projects or dependencies that were used in conjunction with Thingsboard to produce the vulnerability.