Vulnerability Response Statement

From the time we receive a vulnerability report to the release of a security update, we follow a traceable, coordinated response process.

1. Receipt and Acknowledgment

Document reports, verify communication channels, and protect information that has not yet been made public.

2. Verification and Classification

Reproduce the issue, determine the scope of impact, and assess the risk using the CVSS.

3. Fixes and Testing

Develop patches, upgrades, or temporary workarounds, and complete validation.

4. Coordination of Disclosure

Prepare announcements, update download and acknowledgment information, and release them all at the appropriate time.

Customer Suggestions