We currently support the latest major release of ERST for security updates.
| Version | Supported |
|---|---|
| 2.x.x | ✅ |
| < 2.0 | ❌ |
If you discover a security vulnerability in ERST, please do NOT open a public issue. We take security very seriously and want to ensure any vulnerabilities are addressed responsibly before they are made public.
To report a vulnerability, please email security@dotandev.com (or reach out privately to the maintainers on the Stellar Developer Discord if the email is unavailable).
Please include the following information in your report:
- The version(s) of ERST affected.
- Detailed steps to reproduce the vulnerability.
- A description of the potential impact.
We will acknowledge your report within 48 hours and provide a timeline for triage and resolution. Once the issue has been resolved, we will publish a security advisory and credit you for the discovery.