Please do not report security vulnerabilities in public issues.
Report a vulnerability through the Security tab of the repository that owns
the affected component. For example, use
brewlet/brewlet for the CLI,
runtime, shim, or provisioner and
brewlet/kubernetes for the
operator, admission webhooks, APIs, manifests, or Helm chart.
If the affected repository does not have private vulnerability reporting enabled, use the maintainers' private contact method shown on that repository's Security page. Do not move a report to a public issue.