Critical Zero-day vulnerability: Libwebp
ID: ee9dc49f-8da7-57e4-9c97-20733ff7ac88
STIX ID: report--ee9dc49f-8da7-57e4-9c97-20733ff7ac88
Feed Name: ThreatLocker Blog
Threat Score
**CVE-2023-5129** is a critical (CVSS 10.0) remote code execution vulnerability in the libwebp image library used by many popular browsers and communication apps (e.g., Chrome, Firefox, Edge, Slack, Microsoft Teams); an attacker can trigger code execution by convincing a user to view a malicious image, and the advisory urges immediate patching and recommends ThreatLocker Ringfencing mitigations to limit abuse.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
