
NGリストの公開は問題ないけど、使ってるライブラリが2年前から更新されてなくて、少し確認しただけで2件critical CVE出てるのでそっちのがやばい🥹 https://nvd.nist.gov/vuln/detail/CVE-2024-8309 https://nvd.nist.gov/vuln/detail/CVE-2025-24158
Post summary
The author notes that a library not updated for two years contains two critical CVEs, but no PoC, exploit, or patch information is provided. No evidence of active exploitation or mitigation is mentioned.
