The community maintains this library. Security fixes go into the latest released version on Clojars. Upgrade to the latest release before you report an issue.
Do not report a security vulnerability through a public GitHub issue.
Report it in private by email to jsavyasachi@gmail.com. You can also use GitHub's private vulnerability reporting ("Report a vulnerability" under the repository's Security tab).
Include this information:
- a description of the issue and its impact,
- the steps to reproduce it, or a proof of concept, and
- the affected versions.
You get a first acknowledgement in a reasonable time. After the issue is confirmed and a fix is released, the advisory is published. It gives credit to the reporter, unless the reporter asks for no credit.