As Kirby already mentioned, the author have been privatly informed about the vulnerabilities in more detail then this public post. He was given time to create a fix without mentioning the risks to public.
Since the risks still exist, it is our duty to inform the users of this hack of the risks. The choice to do this in the public thread was being made since not all that use the hack would have clicked install, and contacting in private would therefor be impossible.
|