The latest version will always be the supported version.
If you have found a security vulnerability in the plugin, please report it using the GitHub vulnerability report. If that is not possible, you may also contact the project maintainer by email.
If the issue is severe enough, you may also want to report it to Jetbrains.