]> git.openstreetmap.org Git - nominatim.git/blobdiff - SECURITY.md
Merge remote-tracking branch 'upstream/master'
[nominatim.git] / SECURITY.md
index e8e6fcade75944428466c1f764e2463deebe71e5..3ec22cbde8c54fc6409acd593d4540b0b6582d60 100644 (file)
@@ -9,11 +9,10 @@ versions.
 
 | Version | End of support for security updates |
 | ------- | ----------------------------------- |
 
 | Version | End of support for security updates |
 | ------- | ----------------------------------- |
+| 4.5.x   | 2026-09-12                          |
+| 4.4.x   | 2026-03-07                          |
+| 4.3.x   | 2025-09-07                          |
 | 4.2.x   | 2024-11-24                          |
 | 4.2.x   | 2024-11-24                          |
-| 4.1.x   | 2024-08-05                          |
-| 4.0.x   | 2023-11-02                          |
-| 3.7.x   | 2023-04-05                          |
-| 3.6.x   | 2022-12-12                          |
 
 ## Reporting a Vulnerability
 
 
 ## Reporting a Vulnerability
 
@@ -37,4 +36,6 @@ incident. Announcements will also be published at the
 
 ## List of Previous Incidents
 
 
 ## List of Previous Incidents
 
+* 2023-11-20 - [SQL injection vulnerability](https://nominatim.org/2023/11/20/release-432.html)
+* 2023-02-21 - [cross-site scripting vulnerability](https://nominatim.org/2023/02/21/release-421.html)
 * 2020-05-04 - [SQL injection issue on /details endpoint](https://lists.openstreetmap.org/pipermail/geocoding/2020-May/002012.html)
 * 2020-05-04 - [SQL injection issue on /details endpoint](https://lists.openstreetmap.org/pipermail/geocoding/2020-May/002012.html)