Also, this Wired article discusses that how, if the EUCLEAK vulnerability was going to be used IRL, then it would most likely be destructive:
At this point, if something like this were to happen IRL, then one would simply consider such a vulnerable YubiKey effectively lost - and in that case, one should really revoke that lost YubiKey (or other affected Yubico Security Key device) from the online accounts it was linked to.