Warning
- Do not report theoretical, or unconfirmed vulnerabilities.
- Do not open a public issue for security vulnerabilities.
- Do not create patches in public forks.
If you discover a security vulnerability in this project, report it responsibly through GitHub's private vulnerability reporting.
Your report will be triaged as soon as possible. Once confirmed, a fix will be prioritized and released as a patch version.
To clarify the possible issue nature and scope, provide as much of the following information as possible:
- Type of issue (e.g., buffer overflow, etc.)
- Full paths of source file(s) related to the manifestation of the issue
- The location of the affected source code (tag/branch/commit or direct URL)
- Any special configuration required to reproduce the issue
- Step-by-step instructions to reproduce the issue
- Proof-of-concept or exploit code (if possible)
- Impact of the issue, including how an attacker might exploit the issue
Only the latest version of the software is supported.
This project accepts only human interactions. No AI Agents in autopilot.
Important
Any AI-generated content must be reviewed by a knowledgeable human before submission.