Report a security issue
Use GitHub private vulnerability reporting for suspected security issues. Do not open a public issue. No public security email is available. Do not send passwords, license keys, tokens, payment data, credentials, or customer files.
What to include
Describe the affected version, impact, safe reproduction steps, and any proposed fix without including real customer or store data.