← 返回首页
Overview · cherrypy/oauth-client-example · GitHub
Skip to content

Navigation Menu

Toggle navigation
Sign in
Appearance settings
Search or jump to...

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Include my email address so I can be contacted

Saved searches

Use saved searches to filter your results more quickly

Appearance settings
Resetting focus

Security: cherrypy/oauth-client-example

Security

SECURITY.md

Reporting Vulnerabilities

⚠️ Please do not file public GitHub issues for security vulnerabilities as they are open for everyone to see! ⚠️

We encourage responsible disclosure practices for security vulnerabilities.

Reporting a Vulnerability

If you believe you've found a security-related bug, fill out a new vulnerability report via GitHub directly. To do so, follow these instructions:

  1. Click on the Security tab in the project repository.
  2. Click the green Report a vulnerability button at the top right corner.
  3. Fill in the form as accurately as you can, including as many details as possible.
  4. Click the green Submit report button at the bottom.

Don't Have A GitHub Account?

Alternatively, drop an email to our CherryPy security mailbox instead of filing a ticket or posting to any public groups. It is currently set up to forward every incoming letter to both Jason R. Coombs and Sviatoslav Sydorenko. You can choose to email us directly. We will try to assess the problem in timely manner and disclose it in a responsible way.

A Tidelift Subscriber?

If you prefer to, you may also report a security vulnerability through the Tidelift security contact. Tidelift will coordinate the fix and disclosure. This is not the maintainers' first preference, though. Please, use the GitHub's vulnerability reporting option, whenever possible.

There aren't any published security advisories

Footer

© 2026 GitHub, Inc.