If you believe you have discovered a security vulnerability in PaletteWB, please report it using the e-mail form given below or by sending a mail to security@palettewb.com.
Please include:
We will:
Supported versions: PaletteWB 2.*.
Thank you for helping improve PaletteWB.
As PaletteWB in its native form is a plain MS Windows application that does not need an internet connection and is at a very low risk of being attacked, we avoid adding additional attack vectors by implementing an automated update functionality. Instead, users are informed about new version unless opting out and may download and install them manually.
Vulnerabilities will be patched and the upcoming of patched versions will be reported to users via mail.
Patches will be made available 5 years after the release of the respective version.
Please report vulnerybility issues using the form below.