Update per CVE-2023-4863
Open
- Dominant language
- JavaScript
- Stars
- 9
- Forks
- 3
- PR merge metrics
- No merged PRs in 30d
Description
Can you please release a new build per the recent update?
https://stackdiary.com/critical-vulnerability-in-webp-codec-cve-2023-4863/
Contributor guide
No contributing guide indexed for this repository
Research direction
Start by reviewing the linked CVE-2023-4863 advisory and the repository's build and release entry points for the Node.js WebAssembly package. Determine which libwebp update is required and how a new build is published; done means a released build contains the relevant fix.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- javascript, node.js, wasm
- Domain
- release, security
- Issue type
- Bug
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 35/100