Only the latest published release of ExcelReader.Core receives security fixes.
Older 1.x releases are not patched retroactively; upgrade to the latest version
before reporting an issue.
Please do not open a public GitHub issue for security vulnerabilities.
Report vulnerabilities privately via GitHub Private Vulnerability Reporting.
Include, where possible:
- The file format(s) involved (
.xlsx,.xlsb,.xls,.csv) - A minimal reproduction file or code sample
- The impact you observed (crash, excessive memory/CPU, incorrect data, etc.)
You should receive an initial response within 5 business days. If the report is confirmed, a fix will be prepared and released before any public disclosure.