Currently, only the latest release of the Java Version Manager for Windows is supported with security updates.
| Version | Supported |
|---|---|
| 1.0.x | ✅ |
| < 1.0.0 | ❌ |
If you discover a security vulnerability within this project (e.g., path injection, UAC escalation exploits, or payload corruption), please DO NOT create a public GitHub issue.
Instead, please report it privately using one of the following methods:
- GitHub Security Advisories: Use the Private vulnerability reporting feature in GitHub under the
Securitytab of this repository. - Direct Email: Send a detailed report directly to the lead maintainer, Alexéy Shishkin, at salexey09@gmail.com.
- Discord: Reach out via direct message on Discord at @thehawk01.
Please provide as much context as possible to help us rapidly reproduce and patch the issue:
- The version(s) of
jvm.bataffected. - The exact steps, environment, or payload required to reproduce the exploit.
- The potential impact (e.g., local privilege escalation, arbitrary code execution).
We take security extremely seriously. We pledge to:
- Acknowledge receipt of your vulnerability report within 48 hours.
- Provide a timeline for investigation and patching.
- Credit you (if desired) in the release notes when the patch is published.