From 113a3ad91f1b3ffb547f119edb032ef37083b44f Mon Sep 17 00:00:00 2001 From: Xiaomeng Zhao Date: Wed, 28 May 2025 11:22:55 +0800 Subject: [PATCH 1/7] Create SECURITY.md --- SECURITY.md | 31 +++++++++++++++++++++++++++++++ 1 file changed, 31 insertions(+) create mode 100644 SECURITY.md diff --git a/SECURITY.md b/SECURITY.md new file mode 100644 index 00000000..7e96a169 --- /dev/null +++ b/SECURITY.md @@ -0,0 +1,31 @@ +# Security Policy + +## Supported Versions + +latest + +## Reporting a Vulnerability + +Please do not report security vulnerabilities through public GitHub issues. + +Instead, please report them at https://github.com/opendatalab/MinerU/security. + +Please include the requested information listed below (as much as you can provide) to help us better understand the nature and scope of the possible issue: + + * Type of issue (e.g. buffer overflow, SQL injection, cross-site scripting, etc.) + * Full paths of source file(s) related to the manifestation of the issue + * The location of the affected source code (tag/branch/commit or direct URL) + * Any special configuration required to reproduce the issue + * Step-by-step instructions to reproduce the issue + * Proof-of-concept or exploit code (if possible) + * Impact of the issue, including how an attacker might exploit the issue + +This information will help us triage your report more quickly. + +## Preferred Languages + +We prefer all communications to be in English and Chinese. + +## Policy + +We will fix security issues in the project's own code as quickly as possible. Before the project completes the fix, you must not disclose the vulnerability information to any public platform. From 0ac5623ad66431b84db5d7028e0f3d48b4e839b9 Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" <41898282+github-actions[bot]@users.noreply.github.com> Date: Wed, 28 May 2025 12:50:37 +0000 Subject: [PATCH 2/7] @seedclaimer has signed the CLA in opendatalab/MinerU#2536 --- signatures/version1/cla.json | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/signatures/version1/cla.json b/signatures/version1/cla.json index 310ccb5d..9b429394 100644 --- a/signatures/version1/cla.json +++ b/signatures/version1/cla.json @@ -263,6 +263,14 @@ "created_at": "2025-04-30T09:25:31Z", "repoId": 765083837, "pullRequestNo": 2411 + }, + { + "name": "seedclaimer", + "id": 86753366, + "comment_id": 2916194375, + "created_at": "2025-05-28T12:50:25Z", + "repoId": 765083837, + "pullRequestNo": 2536 } ] } \ No newline at end of file From a911c29fbb9fe175a034c7a2f49abd7581088cd6 Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" <41898282+github-actions[bot]@users.noreply.github.com> Date: Fri, 30 May 2025 02:57:16 +0000 Subject: [PATCH 3/7] @liuzhenghua has signed the CLA in opendatalab/MinerU#2550 --- signatures/version1/cla.json | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/signatures/version1/cla.json b/signatures/version1/cla.json index 9b429394..41dee10d 100644 --- a/signatures/version1/cla.json +++ b/signatures/version1/cla.json @@ -271,6 +271,14 @@ "created_at": "2025-05-28T12:50:25Z", "repoId": 765083837, "pullRequestNo": 2536 + }, + { + "name": "liuzhenghua", + "id": 11787325, + "comment_id": 2921092605, + "created_at": "2025-05-30T02:57:07Z", + "repoId": 765083837, + "pullRequestNo": 2550 } ] } \ No newline at end of file From efba5d4594d4b8eff1b18a5d9fe52a4ea08bf998 Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" <41898282+github-actions[bot]@users.noreply.github.com> Date: Wed, 4 Jun 2025 02:39:52 +0000 Subject: [PATCH 4/7] @PairZhu has signed the CLA in opendatalab/MinerU#2566 --- signatures/version1/cla.json | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/signatures/version1/cla.json b/signatures/version1/cla.json index 41dee10d..09dd97a8 100644 --- a/signatures/version1/cla.json +++ b/signatures/version1/cla.json @@ -279,6 +279,14 @@ "created_at": "2025-05-30T02:57:07Z", "repoId": 765083837, "pullRequestNo": 2550 + }, + { + "name": "PairZhu", + "id": 47098840, + "comment_id": 2938149702, + "created_at": "2025-06-04T02:39:39Z", + "repoId": 765083837, + "pullRequestNo": 2566 } ] } \ No newline at end of file From 46f7e0f532b299da669a5965b7eb6533551829d1 Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" <41898282+github-actions[bot]@users.noreply.github.com> Date: Thu, 5 Jun 2025 11:30:53 +0000 Subject: [PATCH 5/7] @AdrianWangs has signed the CLA in opendatalab/MinerU#2578 --- signatures/version1/cla.json | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/signatures/version1/cla.json b/signatures/version1/cla.json index 09dd97a8..f8ae01d4 100644 --- a/signatures/version1/cla.json +++ b/signatures/version1/cla.json @@ -287,6 +287,14 @@ "created_at": "2025-06-04T02:39:39Z", "repoId": 765083837, "pullRequestNo": 2566 + }, + { + "name": "AdrianWangs", + "id": 72337244, + "comment_id": 2943818300, + "created_at": "2025-06-05T11:30:42Z", + "repoId": 765083837, + "pullRequestNo": 2578 } ] } \ No newline at end of file From 9487d33d7b35c02d16c79aed701cdc3d070d7a17 Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" <41898282+github-actions[bot]@users.noreply.github.com> Date: Fri, 13 Jun 2025 04:22:59 +0000 Subject: [PATCH 6/7] @YanzhenHuang has signed the CLA in opendatalab/MinerU#2620 --- signatures/version1/cla.json | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/signatures/version1/cla.json b/signatures/version1/cla.json index f8ae01d4..2b5acc2a 100644 --- a/signatures/version1/cla.json +++ b/signatures/version1/cla.json @@ -295,6 +295,14 @@ "created_at": "2025-06-05T11:30:42Z", "repoId": 765083837, "pullRequestNo": 2578 + }, + { + "name": "YanzhenHuang", + "id": 86364920, + "comment_id": 2968974232, + "created_at": "2025-06-13T04:17:08Z", + "repoId": 765083837, + "pullRequestNo": 2620 } ] } \ No newline at end of file From 97c1362e3c089ba77f685e13be8fb60111c9f40c Mon Sep 17 00:00:00 2001 From: myhloli Date: Fri, 13 Jun 2025 12:31:41 +0000 Subject: [PATCH 7/7] Update version.py with new version --- mineru/version.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/mineru/version.py b/mineru/version.py index 5a6bc65e..8c0d5d5b 100644 --- a/mineru/version.py +++ b/mineru/version.py @@ -1 +1 @@ -__version__ = "2.0.0" \ No newline at end of file +__version__ = "2.0.0"