You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: content/cve.md
+8-7Lines changed: 8 additions & 7 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -31,7 +31,7 @@ Because AHA! is a research organization, we will also accept vulnerability repor
31
31
32
32
### Out of Scope
33
33
34
-
- Assets or other equipment not owned by parties which **are already** participating as a [CVE Numbering Authority].
34
+
- Assets or other equipment not owned by parties which **are already** participating as a [CVE Numbering Authority].
35
35
36
36
Vulnerabilities discovered or suspected in out-of-scope systems should be reported to the appropriate vendor or applicable authority.
37
37
@@ -56,9 +56,9 @@ In participating in our vulnerability disclosure program in good faith, we ask t
56
56
- Perform testing only on in-scope systems, and respect systems and activities which are out-of-scope;
57
57
- If a vulnerability provides unintended access to data: Limit the amount of data you access to the minimum required for effectively demonstrating a Proof of Concept; and cease testing and submit a report immediately if you encounter any user data during testing, such as Personally Identifiable Information (PII), Personal Healthcare Information (PHI), credit card data, or proprietary information;
58
58
- You should only interact with test accounts you own or with explicit permission from the account holder; and
59
-
- Do not engage in extortion.
59
+
- Do not engage in extortion.
60
60
61
-
### Official Channels
61
+
### Official Channels
62
62
63
63
Please report security issues affecting AHA! via [[email protected]](mailto:[email protected]), providing all relevant information. The more details you provide, the easier it will be for us to triage and fix the issue.
64
64
@@ -97,8 +97,8 @@ For issues involving other parties, please see additional requirements, below. N
97
97
When we publish CVEs, we will tend to use this [template], adjusted to taste.
0 commit comments