This project adheres to the Synaptics Vulnerability Disclosure Policy.
If you think you have found a vulnerability in this repository, please report it through the coordinated disclosure process.
Please do not report security vulnerabilities through public issues, discussions, or change requests.
Instead, email the Synaptics Product Security Incident Response Team (PSIRT) at PSIRT@synaptics.com.
You can find more information about reporting and disclosure in the Synaptics Vulnerability Disclosure Policy.
Please include as much of the following information as possible to help us understand and resolve the issue:
- The type of issue (e.g., buffer overflow, SQL injection, or cross-site scripting)
- Affected versions
- The impact of the issue, including how an attacker might exploit it
- Step-by-step instructions to reproduce the issue
- The location of the affected source code (tag/branch/commit or direct URL)
- Full paths to source files related to the issue
- The configuration required to reproduce the issue
- Relevant log files (if available)
- Proof-of-concept or exploit code (if possible)
This information will help us triage your report more quickly.