The Sudo Project takes security seriously. If you believe you have found a security vulnerability in Sudo, you can report it to us as described below. Reporting Security Issues Do not report security vulnerabilities through public GitHub issues or Bugzilla. Instead, report them via email to Todd.Miller@sudo.ws. You may encrypt your message with PGP if you would like. The current PGP key has the fingerprint 59D1 E9CC BA2B 3767 04FD D35B A9F4 C021 CEA4 70FB and may be downloaded from the sudo.