mirror of
https://github.com/coder/coder.git
synced 2026-09-24 15:04:27 +08:00
followup to #16761 thanks @lucasmelin ! + thanks: @ethanndickson @Parkreiner @matifali @aqandrew - [x] update snippet - [x] find/replace - [x] spot-check [preview](https://coder.com/docs/@16761-gfm-callouts/admin/templates/managing-templates/schedule) (and others) --------- Co-authored-by: EdwardAngert <17991901+EdwardAngert@users.noreply.github.com> Co-authored-by: M Atif Ali <atif@coder.com>
29 lines
1.4 KiB
Markdown
29 lines
1.4 KiB
Markdown
# Security
|
|
|
|
<children></children>
|
|
|
|
For other security tips, visit our guide to
|
|
[security best practices](../../tutorials/best-practices/security-best-practices.md).
|
|
|
|
## Security Advisories
|
|
|
|
> [!CAUTION]
|
|
> If you discover a vulnerability in Coder, please do not hesitate to report it
|
|
> to us by following the instructions
|
|
> [here](https://github.com/coder/coder/blob/main/SECURITY.md).
|
|
|
|
From time to time, Coder employees or other community members may discover
|
|
vulnerabilities in the product.
|
|
|
|
If a vulnerability requires an immediate upgrade to mitigate a potential
|
|
security risk, we will add it to the below table.
|
|
|
|
Click on the description links to view more details about each specific
|
|
vulnerability.
|
|
|
|
---
|
|
|
|
| Description | Severity | Fix | Vulnerable Versions |
|
|
|-----------------------------------------------------------------------------------------------------------------------------------------------|----------|----------------------------------------------------------------|---------------------|
|
|
| [API tokens of deleted users not invalidated](https://github.com/coder/coder/blob/main/docs/admin/security/0001_user_apikeys_invalidation.md) | HIGH | [v0.23.0](https://github.com/coder/coder/releases/tag/v0.23.0) | v0.8.25 - v0.22.2 |
|