The developers published the fixed version (2.3.29) on GitHub precisely to access that security flaw. So I downloaded and installed it. I haven’t contacted them.
This reply was modified 2 years, 3 months ago by rlwp.
Screenshots above. I don’t remember if I uninstalled the vulnerable version before upgrading Gigpress; it was a while ago and I only recently started using Jetpack.