Files
md/SECURITY.md
Libin YANG 8a20da94a5 chore(deps): upgrade dependencies and fix security alerts (#1652)
Bump direct and transitive deps to latest versions while keeping Prettier pinned at 2.8.8. Force shell-quote to 1.8.4 to resolve CVE-2026-9277 and add SECURITY.md.

Co-authored-by: Cursor <cursoragent@cursor.com>
2026-06-10 13:44:29 +08:00

1.1 KiB

Security Policy

Supported Versions

Version Supported
2.x
< 2.0

Reporting a Vulnerability

If you discover a security vulnerability in doocs/md, please report it responsibly:

  1. Do not open a public GitHub issue for security-sensitive reports.
  2. Email the maintainers at security@doocs.org, or use GitHub Private Vulnerability Reporting if available.
  3. Include a clear description, steps to reproduce, and impact assessment when possible.

We aim to acknowledge reports within 3 business days and will work with you on a fix and coordinated disclosure timeline.

Security Updates

Thank you for helping keep doocs/md and its users safe.