Skip to content

Security: Jako/AjaxUpload

SECURITY.md

Security Policy

We take the security of our software seriously. If you believe you have discovered a security vulnerability in this MODX Extra, please follow the responsible disclosure procedure described below.

Supported Versions

The following versions are currently being supported with security updates.

Version Supported
2.x Yes
1.x Critical vulnerabilities only

Reporting a Vulnerability

Do not open a public GitHub issue for security vulnerabilities. Public disclosure before a patch is available puts all users of this MODX Extra at risk.

To report a vulnerability, use one of the following channels:

We aim to respond to all reports within 24–48 hours of receipt.

There aren't any published security advisories