Skip to content

Security: zblogcn/zblogphp

Security

SECURITY.md

Security Policy

Supported Versions

The following table lists which versions of this project are currently supported with security updates.

Version Supported
5.1.x
5.0.x
4.0.x
< 4.0

Reporting a Vulnerability

If you discover a security vulnerability in this project, please do not open a public issue.
Instead, follow the responsible disclosure process described below.

  1. Contact us privately via email: security@yourdomain.com
    (Replace this with your actual security contact email.)

  2. Please include:

    • A detailed description of the vulnerability.
    • Steps to reproduce (proof of concept if possible).
    • Any affected version(s) or configuration(s).
    • Your contact information so we can respond.
  3. You can expect:

    • An acknowledgement of receipt within 3 business days.
    • A status update or fix plan within 7 business days.
    • Public disclosure only after a fix has been released.
  4. Once confirmed and fixed, we will:

    • Credit the reporter (if desired).
    • Publish a Security Advisory via the GitHub Security tab.

Security Best Practices for Users

  • Always keep your CMS updated to the latest supported version.
  • Avoid installing unverified plugins or themes.
  • Regularly review your server configuration and file permissions.
  • Use HTTPS and strong admin credentials.

Thank you for helping make this project more secure! 💪

There aren’t any published security advisories