Please do not disclose a suspected vulnerability in a public issue. Email dyyxml@gmail.com with:
- the affected TabCtrl version;
- reproduction steps or a minimal proof of concept;
- the expected and observed behavior;
- any suggested mitigation.
请不要在公开 Issue 中披露疑似漏洞。请发送邮件至 dyyxml@gmail.com,并附上受影响版本、复现步骤、预期与实际行为,以及可选的修复建议。
TabCtrl handles model credentials and can operate browser pages, so reports involving credential exposure, approval bypasses, navigation policy bypasses, task-tab isolation, native messaging, or unintended data transmission are especially important.