Welcome and thanks for taking interest in Hestia CP!
We are mostly interested in reports by actual Hestia CP users but all high quality contributions are welcome.
If you believe that you have have discovered a vulnerability in Hestia Control Panel, please let our development team know by submitting a report Huntr.dev Bounties and CVEs are automatically managed and allocated via the platform.
If you are unable to use Huntr.dev please send an email to support@hestiacp.com
We ask you to include a detailed description of the vulnerability, a list of services involved (e.g. exim, dovecot) and the versions which you've tested, full steps to reproduce the vulnerability, and include your findings and expected results.
Please do not open any public issue on Github or any other social media before the report has been published and a fix has been released.
With that, good luck hacking us ;)
| Version | Supported |
|---|---|
| Latest | :white_check_mark: |
/test/ folder