Security fixes are currently provided for the latest published package version.
Please report security issues privately through GitHub Security Advisories.
Do not open a public issue for vulnerabilities involving script injection, unsafe link handling, WebView2 bridge behavior, or package supply-chain concerns.