Re: Security Disclosure Inquiry

"Uwe Schindler via dev" <[email protected]> Mon, 13 Jul 2026 08:46:46 +0200
Newsgroups gmane.comp.jakarta.lucene.devel
Message-ID <[email protected]>
--------------8zFpVxAvRjPAPqVxx6rcEONG
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 7bit

Hi,

See https://www.apache.org/security/. You can also send a mail directly 
to the project's security liust: [email protected]

Uwe

Am 10.07.2026 um 15:00 schrieb Aditya:
>
> Hi Team,
>
> I'm an independent cybersecurity professional and recently identified 
> a security vulnerability impacting one of your online platforms.
>
> Could you let me know the correct channel for responsible disclosure?
>
> A security contact email, bug bounty page, or disclosure policy would 
> be ideal.
>
> Thanks,
> Aditya
> Cybersecurity Researcher
>
-- 
Uwe Schindler
Achterdiek 19, D-28357 Bremen
https://www.thetaphi.de
eMail:[email protected]

--------------8zFpVxAvRjPAPqVxx6rcEONG
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: 7bit

<!DOCTYPE html>
<html>
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
  </head>
  <body>
    <p>Hi,</p>
    <p>See <a class="moz-txt-link-freetext" href="https://www.apache.org/security/">https://www.apache.org/security/</a>. You can also send a mail
      directly to the project's security liust:
      <a class="moz-txt-link-abbreviated" href="mailto:[email protected]">[email protected]</a></p>
    <p>Uwe</p>
    <div class="moz-cite-prefix">Am 10.07.2026 um 15:00 schrieb Aditya:<br>
    </div>
    <blockquote type="cite"
cite="mid:CAHLO6Wca06TAiW0nOZn_XjGfAwb1TnSzAC=qQ1r59Ri+O_u1yw@mail.gmail.com">
      <meta http-equiv="content-type" content="text/html; charset=UTF-8">
      <div
style="font-family:Arial,sans-serif;font-size:14px;line-height:1.6;color:#202124">
        <p>Hi Team,</p>
        <p>I'm an independent cybersecurity professional and recently
          identified a security vulnerability impacting one of your
          online platforms.</p>
        <p>Could you let me know the correct channel for responsible
          disclosure?</p>
        <p>A security contact email, bug bounty page, or disclosure
          policy would be ideal.</p>
        <p>Thanks,<br>
          Aditya<br>
          Cybersecurity Researcher</p>
      </div>
    </blockquote>
    <pre class="moz-signature" cols="72">-- 
Uwe Schindler
Achterdiek 19, D-28357 Bremen
<a class="moz-txt-link-freetext" href="https://www.thetaphi.de">https://www.thetaphi.de</a>
eMail: <a class="moz-txt-link-abbreviated" href="mailto:[email protected]">[email protected]</a></pre>
  </body>
</html>

--------------8zFpVxAvRjPAPqVxx6rcEONG--