Security advisories keep users informed about important vulnerabilities, risk events and the corresponding mitigation steps.
Types of advisories
Product security updates, third-party component risk notices and trending threat warnings.
- Product security updates
- Third-party component risk notices
- Trending threat warnings
Response process
Reports are verified, fixed and released, with credit given to the reporter.
- Report intake and verification
- Fix and release
- Advisory publication and credits
FAQ
How do I report a vulnerability?
Submit it through the official security channel with reproduction steps and impact scope.
Do advisories include mitigations?
Yes. Each advisory provides temporary mitigations and the fixed version information.