Skip to main content

Security & Advisories

Security at Vates covers two things: how we design, build and operate our stack so it is secure in the first place, and how we communicate transparently when a vulnerability affects our products.

  • Security at Vates: our overall security policy and philosophy, from the Xen hypervisor's isolation model to our development processes, CI/CD pipelines, and responsible disclosure policy.
  • Security advisories (VSA): the complete list of published Vates Security Advisories, searchable by CVE, XSA, severity or product, with affected products and remediation for each.

To follow new advisories as they are published, subscribe to the VSA RSS feed, or consume the machine-readable index from your tooling.