The following versions of deegree are currently being supported with security updates:
Version | Supported |
---|---|
3.6.x | ✅ |
3.5.x | ✅ |
3.4.x | ❌ |
<= 3.3 | ❌ |
Please check also our support matrix for more detailed information. The project publishes the report of the latest OWASP security scan here.
If you encounter a security vulnerability in deegree please take care to report the issue in a responsible fashion:
- Keep exploit details out of a public issue report (either report it here or send the report to the TMC privately – just like you would do for sensitive sample data)!
- Be prepared to work with Technical Management Committee (TMC) members on a solution!
- Keep in mind TMC members are volunteers and an extensive fix may require fundraising and other kinds of contributions!