Vulnerability in Safetensors conversion space

Just came across an article highlighting a vulnerability in the Hugging Face Safetensors conversion service.

It raises important questions about security in downloading and using models from huggingface, even in safetensors format. Curious to hear thoughts and ideas on, As an enterprise, how do we ensure the model files we download and use are secure amidst these vulnerabilities?