Skip to content

Commit

Permalink
Added lead-in paragraph and updated 'Supported Versions' table.
Browse files Browse the repository at this point in the history
  • Loading branch information
kwwall committed May 30, 2024
1 parent f05876c commit 036b83a
Showing 1 changed file with 10 additions and 2 deletions.
12 changes: 10 additions & 2 deletions SECURITY.md
Original file line number Diff line number Diff line change
@@ -1,11 +1,19 @@
# Security Policy

In general, because the ESAPI core development is so small (3 people, all
working full time jobs), we can only support the latest version of ESAPI.
If you are locked in to some previous version and are unable to upgrade
to the latest version, perhaps one or more of us might consider back-porting
a patch (especially if it is the only way to address an ESAPI vulnerability),
but if it is anything but trivial, we would charge a TBD consulting fee.

## Supported Versions


| Version | Supported |
| ------- | ------------------ |
| 2.5.1.0 (latest) | :white_check_mark: |
| 2.1.0.1-2.5.0.0 | :x:, upgrade to latest release |
| 2.5.4.0 (latest) | :white_check_mark: |
| 2.1.0.1-2.5.3.1 | :x:, upgrade to latest release |
| <= 1.4.x | :x:, no longer supported AT ALL |

## Reporting a Vulnerability
Expand Down

0 comments on commit 036b83a

Please sign in to comment.