-
Since I could not find any mention of CVE-2023-4863 (described in this blog) in this repo I was wondering, if it was secure against it? I saw that webp images are limited in these lines imgproxy/processing/fix_size.go Lines 14 to 36 in a2fd4bc
|
Beta Was this translation helpful? Give feedback.
Answered by
DarthSim
Jan 5, 2024
Replies: 1 comment 2 replies
-
imgproxy uses libwebp 1.3.2 which has this CVE fixed |
Beta Was this translation helpful? Give feedback.
2 replies
Answer selected by
sihu
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
imgproxy uses libwebp 1.3.2 which has this CVE fixed