Please do not report security vulnerabilities in public issues.
Use GitHub's private vulnerability reporting form.
If the form is unavailable, email the maintainers listed in mysql2.gemspec
with a brief summary and arrange a secure channel before sending exploit details, credentials, or production data.