I'm making decisions about which download component to use and wondered if there had been any resolution of the security issue? Did the developer contact you, Ruth? I understand revealing the security vulnerability would be unwise -- I just need to know if this is being addressed in a timely manner.
Thanks!
Schelly