From fffdfc9b8815771f3dd3ede4779d1b1b7e1dbe6b Mon Sep 17 00:00:00 2001 From: Sarah Hoffmann Date: Mon, 20 Nov 2023 10:44:48 +0100 Subject: [PATCH] add report on newest vulnerability --- SECURITY.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/SECURITY.md b/SECURITY.md index f6215f64ec..2cb351ce60 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -12,7 +12,6 @@ versions. | 4.3.x | 2025-09-07 | | 4.2.x | 2024-11-24 | | 4.1.x | 2024-08-05 | -| 4.0.x | 2023-11-02 | ## Reporting a Vulnerability @@ -36,5 +35,6 @@ incident. Announcements will also be published at the ## List of Previous Incidents -* 2020-05-04 - [SQL injection issue on /details endpoint](https://lists.openstreetmap.org/pipermail/geocoding/2020-May/002012.html) +* 2023-11-20 - [SQL injection vulnerability](https://nominatim.org/2023/11/20/release-432.html) * 2023-02-21 - [cross-site scripting vulnerability](https://nominatim.org/2023/02/21/release-421.html) +* 2020-05-04 - [SQL injection issue on /details endpoint](https://lists.openstreetmap.org/pipermail/geocoding/2020-May/002012.html)