Security fixes are handled on the default branch and released with the next RegressionLab version.
Please do not publish exploit details in a public issue.
Use GitHub private vulnerability reporting if it is enabled for this repository. If it is not available, contact the maintainer using the email listed in pyproject.toml, or open a public issue with only a high-level description and no sensitive proof-of-concept details.
Useful report details:
- Affected RegressionLab version or commit.
- Operating system and Python version.
- Steps to reproduce, using a minimal non-sensitive dataset if data files are involved.
- Expected impact and whether the issue affects local use only or a shared deployment.