GHSA-j7hp-h8jx-5ppr
HIGHCVE-2023-4863[Google](https://chromereleases.googleblog.com/2023/09/stable-channel-update-for-desktop11.html) and [Mozilla](https://www.mozilla.org/en-US/security/advisories/mfsa2023-40/) have released security advisories for RCE due to heap overflow in libwebp. Google warns the vulnerability has been exploited in the wild.
- Affected
- >=0.0.0-0, <0.9.3
- Fixed in
- 0.2.6
- Weakness
- CWE-787
- Published
- 2023-09-12
- Source
- github