Your question is Handling a Sensitive Security Gap. Take a moment with it on the right.
Talk me through your thinking if you like. When you're confident, submit your answer and I'll grade it like a real screen (7/10 or better passes).
Tell me about a time you discovered a serious application security weakness that others were treating as a quick filter or tooling problem, but you believed needed a deeper fix. How did you communicate the risk, align the right people, and drive a permanent resolution when the path forward was still unclear?