If there's an outstanding exploit you either find or come across, this is what you do:
Contact us via our contact form - Include all information there is on it, if you have a workaround or patch feel free to include it, but we don't need it.
If you are reporting an exploit on your own site (rather than drawing our attention to a security notice) you'll probably need to do some investigation first - look at the server and database logs around the time the hack occurred, look at file and directory permissions and so on. Remember that the hacker is not necessarily gaining access through e107, even if the end result affects e107.
Tell us who found the issue can 'credit' them.
RULES: Only use this email for active exploits - concerns, support requests, spam or anything else at this address will be ignored and you may find yourself blacklisted and possibly banned from this site.