Wix takes security issues seriously and asks that vulnerabilities are reported privately.
Please do not report security issues for @wix/pathgrade in public GitHub issues, pull requests, discussions, or other public channels. Instead, report them through the Wix Security contact process:
- Use the Wix Security contact page linked from Reporting a Security Issue.
- Security researchers submitting to the Wix Bug Bounty program can email reports with full details to
bugbounty@wix.com.
Include enough detail for Wix Security to reproduce and assess the issue, such as affected versions, impact, reproduction steps, proof-of-concept code, and any relevant logs or screenshots.
Wix Security will triage vulnerability reports and coordinate remediation and disclosure according to Wix security processes.