Closed
Description
Introduction
Fresco update to the latest version( 3.1.2 ) due the CVE-2023-4863 vulnerability
Details
LibWebP has a reported critical zero-click vulnerability, the vulnerability in LibWebP was discovered on September 7, 2023 by researchers at the University of Toronto's Citizen Lab.
Discussion points
Since @facebook/react-native brings Fresco dependency which is affected by the LibWebP vulnerability, do we have a plan to migrate to the latest Fresco version?
Metadata
Metadata
Assignees
Labels
No labels