Report a vulnerability
Read the authorized scope, safe-harbour terms and coordinated disclosure process before testing or reporting.
Disclosure policyThis is the public source for vulnerability advisories affecting products and services owned by Kotav Labs. Each published record will identify affected versions, impact, remediation and any assigned CVE.
Published 19 September 2026There are no Kotav Labs product security advisories at this time. We do not publish sample CVEs or placeholder incidents. Confirmed issues will appear here after coordinated triage, with enough detail for customers to act safely.
Read the authorized scope, safe-harbour terms and coordinated disclosure process before testing or reporting.
Disclosure policySend the affected service, reproduction steps, impact and redacted evidence. We target acknowledgement within three business days.
m.tavares@kotavlabs.com