Mastodon Feed: Post

Mastodon Feed

kornel ("Kornel") wrote:

There's CVE-2023-4863 for actively exploited #WebP vulnerability in Chrome.

edit: affects other browsers too,
so most likely everything with WebP is vulnerable. There are buffer-overflow-patching commits added to libwebp very recently.