Please do not report security vulnerabilities through public GitHub issues.
Instead, use GitHub Private Vulnerability Reporting to disclose the vulnerability privately. This allows the maintainers to assess and address the issue before any public disclosure.
To help us triage and resolve the issue as quickly as possible, please include:
- A description of the vulnerability and its potential impact
- Steps to reproduce the issue or a proof-of-concept
- The affected versions of pybase64
- Any suggested mitigations, if known
- You will receive an acknowledgement within a few days of your report.
- The maintainers will investigate and keep you informed of the progress.
- Once a fix is available, a coordinated disclosure will be arranged with you.