Skip to content

Security: jline/jline3

SECURITY.md

Security Policy

Supported Versions

Version Supported
4.1.x ✅ Yes
4.0.x ✅ Yes
3.x ✅ Security fixes
< 3.0 ❌ No

Reporting a Vulnerability

Please do NOT report security vulnerabilities through public GitHub issues.

Instead, use one of the following methods:

  1. GitHub Private Vulnerability Reporting (preferred): Go to the Security Advisories page and click "Report a vulnerability".

  2. Email: Send details to gnodet@gmail.com.

What to include

  • Description of the vulnerability
  • Steps to reproduce
  • Affected version(s)
  • Any potential impact assessment

Response timeline

  • Acknowledgment: Within 48 hours
  • Initial assessment: Within 1 week
  • Fix timeline: Depends on severity, but we aim for patches within 30 days for critical issues

Disclosure

We follow coordinated disclosure. We will work with you on a timeline for public disclosure after a fix is available.

There aren't any published security advisories