logo

Critical Zero-day vulnerability: Libwebp

ID: ee9dc49f-8da7-57e4-9c97-20733ff7ac88

STIX ID: report--ee9dc49f-8da7-57e4-9c97-20733ff7ac88

Feed Name: ThreatLocker Blog

Threat Score
85/100

Date Published: 2025-01-03

Date Updated: 2026-05-01

...
...

**CVE-2023-5129** is a critical (CVSS 10.0) remote code execution vulnerability in the libwebp image library used by many popular browsers and communication apps (e.g., Chrome, Firefox, Edge, Slack, Microsoft Teams); an attacker can trigger code execution by convincing a user to view a malicious image, and the advisory urges immediate patching and recommends ThreatLocker Ringfencing mitigations to limit abuse.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.