sksamuel / scrimage

JVM - Java, Kotlin, Scala image processing library
https://sksamuel.github.io/scrimage
Apache License 2.0
1.05k stars 140 forks source link

Security vulnerability in the webp library. #281

Closed Squadella closed 8 months ago

Squadella commented 9 months ago

There is a big vulnerability found in libwepb.

You should consider upgrade the library.

Some articles for more information : lib web is impacted some info on the 0-day

Squadella commented 8 months ago

The version of libwebp is not affected by this vulnerability, my bad.

The version of libwebp affected are 0.5.0 up to 1.3.1.