The latest release on main / GitHub Releases is supported with security fixes.
Please do not open a public issue with exploit details.
Email or contact the maintainer via GitHub (hackmods) and describe:
- Affected version
- Impact (e.g. unexpected host injection, XSS in options)
- Reproduction steps at a high level
We will acknowledge and coordinate a fix and disclosure timeline.
- MPU never stores PeopleSoft passwords by design
- Report supply-chain concerns in dependencies via Dependabot PRs when possible