Ideally it would be nice to see a Security page with anything and everything related to security:
- Security reporting SOP
- CVE-IDs (not applicable w/ new projects obviously)
- Links to documenation on methods of Authentication, Authorization, Access Control, etc
- Details on any built-in countermeasures to applicable OWASP Top 10, and/or example implementation code for security-per-project frameworks
Some partial examples, all easy to find a click or two away from the framework's home page:
http://www.djangobook.com/en/2.0/chapter20.html
http://www.yiiframework.com/doc/guide/1.1/en/topics.security (docs page, but linked directly from Features list page)
http://www.yiiframework.com/doc/guide/1.1/en/topics.auth (docs page, but linked directly from Features list page)
http://symfony.com/doc/current/contributing/code/security.ht... (more on their vulnerability reporting process, but nice to know their SOP)
http://seventhings.liftweb.net/security
http://cakephp.org/ (not great but at least they pay some lip service to it on the home page, implying more details can be found digging around in the docs/source)
http://www.springsource.org/features/security (also not great but again, implying it can be found with some digging)
This stuff may be SOP for mature frameworks, but would be nice to see it on new ones too.