Hi team, I was going through datahub and found a behavior which seems to me as a security vulnerability. I had sent an email to security@datahubproject.io describing the issue. There was no reply regarding it and I am just pinging here to notify.
Thanks
d
delightful-ram-75848
07/26/2023, 4:53 AM
Hi, thanks for reporting - we’ll get back to you shortly!
b
brave-engine-32813
08/29/2023, 7:50 AM
Hi @delightful-ram-75848 There was no reply from anyone yet.
d
delightful-ram-75848
08/29/2023, 8:27 AM
Hi - sorry for the late response here, I just contacted to our product team to review your email. Thank you for your patience & we’ll be in touch with you shortly!
l
little-megabyte-1074
08/29/2023, 6:46 PM
Hi @brave-engine-32813! Thanks so much for reporting this - we’re currently only taking on high severity vulnerabilities, so we don’t currently have this prioritized & I don’t have a concrete timeline for you. That said, we’re always excited for community-led contributions to address things like this!
b
brave-engine-32813
08/30/2023, 5:00 PM
Thanks for the reply @little-megabyte-1074. I may not be able to fix the issue but I hope you consider this as a valid issue and put in the backlog because I see the issue in the hosted demo website well.