Please do not report security vulnerabilities in public GitHub issues.
Use GitHub's private vulnerability reporting flow: https://github.com/valkdb/postgresparser/security/advisories/new
Include:
- A clear description of the issue
- Reproduction steps or proof of concept
- Impact assessment
- Suggested fix or mitigation (if known)
- We will acknowledge receipt as soon as possible.
- We will investigate, validate impact, and coordinate a fix.
- We will publish a coordinated disclosure after a patch is available.