mirror of
https://github.com/th30d4y/ExecuTrace.git
synced 2026-05-26 11:35:51 +00:00
791 B
791 B
Security Advisory Process
This document defines how ExecuTrace handles vulnerability advisories.
Advisory Workflow
- Receive private report
- Triaging and severity assessment
- Patch development and review
- Coordinated release
- Public advisory publication and attribution
Severity Guide
- Critical: Remote execution, full compromise
- High: Privilege escalation, data exposure
- Medium: Significant abuse with constraints
- Low: Limited impact
Attribution
Contributors and researchers who responsibly disclose verified vulnerabilities are added to:
website/data/security_hof.json- website Security Hall of Fame section
Advisory Template
- Title
- Affected versions
- CVSS/severity
- Technical summary
- Reproduction
- Mitigation
- Fixed version
- Credits