We take security vulnerabilities seriously. Please do not report security vulnerabilities through public GitHub issues.
Instead, report them through SAP's official vulnerability disclosure process:
https://www.sap.com/about/trust-center/security/incident-management.html
Please include:
- A description of the vulnerability
- Steps to reproduce
- Potential impact
- Any suggested mitigations
You will receive a response within 5 business days. We appreciate responsible disclosure and will acknowledge your contribution in the release notes.
Only the latest release is actively supported with security updates.