Vulnerability Response Statement
From the time we receive a vulnerability report to the release of a security update, we follow a traceable, coordinated response process.
1. Receipt and Acknowledgment
Document reports, verify communication channels, and protect information that has not yet been made public.
2. Verification and Classification
Reproduce the issue, determine the scope of impact, and assess the risk using the CVSS.
3. Fixes and Testing
Develop patches, upgrades, or temporary workarounds, and complete validation.
4. Coordination of Disclosure
Prepare announcements, update download and acknowledgment information, and release them all at the appropriate time.
Customer Suggestions
- Subscribe and check product security bulletins regularly;
- Verify that the product is still within the security update support period;
- Prioritize addressing severe and high-risk vulnerabilities;
- If you discover a new issue, please submit it using the vulnerability report form.