Security fixes are applied to the current development branch and released versions when practical.
Do not open a public issue for a suspected security vulnerability. Send a
description, reproduction steps, impact assessment, and any suggested fix to
oliver.braun@nucos.de.
You will receive an acknowledgement within seven days. The maintainer will coordinate a fix and disclosure timeline with the reporter when the report is confirmed.