Reply to this note

Please Login to reply.

Discussion

Not sure what I'm supposed to take away from your post. 😬

Is this confirming that actually there are vulnerabilities? I cannot open the github links without an account.

They were using a library with a vulnerability in it. If you updated signal recently. You're fine. Or disable the link preview and you're fine.

CVE was a Critical vulnerability for libwebp. Signal iOS and Android use libwebp.

Ah okay, interesting. Thanks.