Security fixes are provided for the latest stable release of LastWave.
| Version | Supported |
|---|---|
| 3.4.x | Yes |
| < 3.4.0 | No |
If you discover a security vulnerability in LastWave, please report it privately rather than creating a public issue.
- Reach out privately to the maintainers on Telegram:
- Channel: https://t.me/clashprojects
- Discussion Group: https://t.me/clashdiscussion
- Alternatively, submit a private security advisory through the GitHub repository.
- Include:
- Description of the vulnerability
- Affected versions and components
- Steps to reproduce or proof-of-concept
- Potential impact assessment
- Initial acknowledgment: Within 48 hours.
- Assessment & mitigation plan: Within 5 business days.
- Public disclosure: Coordinated after a patched release is published.
Thank you for helping keep LastWave secure for all users.