Security fixes are released from the current release line. Older releases do not receive backports — please reproduce against the latest release before reporting.
| Release line | Status |
|---|---|
| Latest | Supported |
| Older | Unsupported |
Report vulnerabilities privately through GitHub Security Advisories:
Include the affected version, operating system, impact, reproduction steps, and a proof of concept when available. Do not put any of those details in a public issue.
If GitHub Security Advisories are unavailable to you - for whatever reason, open a public issue asking for a private contact channel and include no vulnerability details in it. If you don't hear back within 48-hours, contact the maintainer directly at thealiaslab@gmail.com.