Security fixes apply to the current master branch and the latest published
release.
Do not open a public issue for a vulnerability that could expose credentials,
private data, unsafe workflow behavior, or a supply-chain risk. Use GitHub's
private vulnerability reporting
or contact 940015925@qq.com with:
- the affected file, workflow, or release;
- reproduction steps and potential impact;
- any suggested mitigation.
Catalog corrections, stale links, licensing questions, and evidence disputes are not security vulnerabilities; use the repository's issue forms instead.