Skip to content

Security: chimurai/http-proxy-middleware

SECURITY.md

Security Policy

Supported Versions

Last 2 major versions are supported.

Version Supported
4.x ✅
3.x ✅
2.x ❌
1.x ❌
0.x ❌

Reporting a Vulnerability

Report new security vulnerability here: https://github.com/chimurai/http-proxy-middleware/security/advisories/new

AI Usage Disclosure

Transparency requirement: You must disclose if and how AI tools were used in discovering, analyzing, or documenting this vulnerability. This includes:

  • Which AI tools or models were used (e.g., GitHub Copilot, ChatGPT, Claude, custom agents)
  • What aspects were AI-assisted (vulnerability discovery, code analysis, report writing, PoC generation, etc.)
  • Confirmation that all findings have been manually verified and validated by a human

Important: AI-assisted reports are welcome and will not be rejected solely due to AI usage. However:

  • Reports that appear to be unverified AI output without human validation will be closed without response
  • Low-effort, mass-generated, or hallucinated content will result in immediate rejection
  • Repeated submissions of unverified AI-generated reports may lead to permanent ban from the project

You remain fully accountable for the accuracy, reproducibility, and quality of your submission regardless of AI tool usage.

Learn more about advisories related to chimurai/http-proxy-middleware in the GitHub Advisory Database