Re: Vulnerability Report (DMARC RECORD) - Mailing list pgsql-www

From Magnus Hagander
Subject Re: Vulnerability Report (DMARC RECORD)
Date
Msg-id CABUevEwetEqDhJ3wrEZweHyLvsn0B4yxZvZBgsRco1cq-vjYCA@mail.gmail.com
Whole thread Raw
In response to Vulnerability Report (DMARC RECORD)  (arslan.whitehat@inbox.eu)
List pgsql-www
On Fri, Apr 16, 2021 at 12:05 PM <arslan.whitehat@inbox.eu> wrote:
>
> Hello Team,
> I am a security researcher and I founded this vulnerability in your website.

First of all, this is not a vulnerability.
Second, this is not about a website, it's about email.



> Hoping for the bounty for my ethical Disclosure.

Please note that

1. The PostgreSQL open source project does not have a bug bounty
program. Individual vendors may, but not the open source project.

2. You announced your "discovery" publicly, that's not the normal way
to get a bounty from *any* source. But luckily, it wasn't actually a
vulnerability.


//Magnus



pgsql-www by date:

Previous
From: arslan.whitehat@inbox.eu
Date:
Subject: Vulnerability Report (DMARC RECORD)
Next
From: David Turoň
Date:
Subject: Wiki editor request