Please do not open a public issue for security problems.
Report vulnerabilities privately via GitHub Security Advisories on the affected repository (use module-modern-frontend if unsure which one).
You can expect an acknowledgment within a few days. Please include:
- Affected package and version
- Impact and a proof of concept or reproduction steps
- Any suggested fix, if you have one
Security fixes land on the latest minor release of each package.