emecas / commitit

Apache License 2.0
1 stars 0 forks source link

[Security] Finding Vulnerability Variants at Scale - file format vulnerability #183

Open emecas opened 1 month ago

emecas commented 1 month ago

https://blackwinghq.com/blog/posts/finding-vulnerability-variants-at-scale/

While performing a security audit, I discovered a file format vulnerability that took me down an unexpected rabbit hole. The bug was fairly straightforward but what made it interesting was its origin and its variants found across numerous popular projects.