- Please report security issues to https://github.com/louislam/uptime-kuma/security/advisories/new.
- Please also create a empty security issues for alerting me, as GitHub Advisory do not send a notification, I probably will miss without this. https://github.com/louislam/uptime-kuma/issues/new?assignees=&labels=help&template=security.md
Do not use the public issue tracker or discuss it in the public as it will cause more damage.
At this moment, I DO NOT accept other bug bounty platforms, because I am not familiar with these platforms and someone have tried to send a phishing link to me by this already. To minimize my own risk, please report through GitHub Advisories only. I will ignore all 3rd-party bug bounty platforms emails.
You should use or upgrade to the latest version of Uptime Kuma. All 1.X.X
versions are upgradable to the lastest version.
Tag | Supported |
---|---|
1 | ✅ |
1-debian | ✅ |
latest | ✅ |
debian | ✅ |
1-alpine | |
alpine | |
All other tags | ❌ |