Our team's security researcher @leonwxqian discovered a SQLite remote code execution vulnerability. This vulnerability can be triggered remotely by accessing a web page, affecting all software that uses Chromium or SQLite. Details can be found at https://blade.tencent.com/magellan/index_en.html ….
-
-
This Tweet is unavailable.
-
Not in Web SQL case: it's your own database you run SQL queries against. That shouldn't be a problem.
- 2 more replies
-
-
-
Yeah, a lot of 3rd party code integrated in a product is effectively dead code. Relatively* easy to determine its presence, very hard to determine reachability. * cc
@halvarflakeThanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.