For those out there poking the code, please disclose responsibly! Don’t just make a public post about a security vulnerability, reach out to the devs first to give them a chance to create a fix.