MicrosoftEdge / MicrosoftEdge/WebView2Feedback

Vulnerability in MicrosoftEdgeWebView2RuntimeInstallerX86.exe

Open
#2,501 1 comment 0 reactions 1 assignee View on GitHub

Nobody has claimed this yet.

bug tracked
Dominant language
PowerShell
Stars
526
Forks
67
PR merge metrics
No merged PRs in 30d

Description

Our vulnerability analysis tool (Black Duck Binary Analysis) detects CVE-2022-21227 in sqlite3 v3.34.1 used in the latest MicrosoftEdgeWebView2RuntimeInstallerX86.exe v1.3.161.35:

image

It would be good if you could update that sqlite3 component in the future to a newer version that has fixed this vulnerability! Because unfortunately, the latest available version v3.38.5 is also affected.

AB#39940959

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.