Responsible Disclosure

Public CVE and reporting practice

The public disclosure record I am comfortable highlighting here is process-first with minimal sensitive detail, clear reporting route, public advisory material and careful separation between public proof and private reporting material. As I continue with security research, more entries will be added; when permitted.

Focus

  • CVE-2026-33825 as a public writing and disclosure example.
  • Security reporting that avoids leaking exploit steps or private user data.
  • Preference for official project security routes before direct contact.