Only the latest version of GVExport receives security updates.
GVExport is a module for the software webtrees. If the vulnerability is in the webtrees software (i.e. it exists when GVExport is not installed), please see the webtrees security policy.
Please do not report security vulnerabilities through public GitHub issues, instead please email the maintainer Neriderc or use the Security tab on GitHub to lodge a security disclosure. Please also advise if you would (or would not) like to receive attribution for the disclosure in the event it is accepted.
Expect acknowledgement within 24-48 hours. The speed of a fix will depend on the complexity of fixing the issue.