Please do not post credentials, private keys, device backups, personal information, or exploit details in a public issue.
Use GitHub's private vulnerability reporting or a private security advisory when the repository offers it. Otherwise, contact the repository owner privately through their GitHub profile and include only the minimum information needed to coordinate a secure report.
Include the affected repository, release or commit, hardware target when relevant, impact, and a minimal reproduction. Do not include real secrets or private user data.