Holy shit that's a train wreck. I simply cannot believe that they "innocently" introduced a code path that excivates private keys.
Absolutely exhausted and don't have the energy to copy paste this from Twitter, but I put together an exhaustive thread on the nightmare fuel that is Ledger Recovery here:
https://twitter.com/sethforprivacy/status/1658544658761277447?s=20
Nitter: https://nitter.sethforprivacy.com/sethforprivacy/status/1658544658761277447
Discussion
Zapped you 10,000 nokyc sats for your efforts.