[BUG] Request for private security contact — Responsible disclosure of high severity vulnerability
Author: Qc-TXCreated Sep 11, 2026Updated Sep 11, 2026
Labelsbug
Hi maintainers,
I have discovered a high-severity security vulnerability in the master (v6 development line) of micro/go-micro gateway dashboard.
According to SECURITY.md, security issues should NOT be reported in public GitHub issues. The private security advisory link returns 404, and [email protected] seems undeliverable based on past discussions.
Could you please provide a working private channel (email / discord DM) so I can send the full vulnerability report, root cause, POC and remediation suggestion for coordinated disclosure?
I will not disclose any technical details publicly before a patch is released.
Thanks, Qc
Source: micro/go-micro