WhisperX tag archive

#CVE-2023-2976

This page collects WhisperX intelligence signals tagged #CVE-2023-2976. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (3)

The Lab · 2026-04-08 03:27:06 · GitHub Issues

1. Google Guava 30.1-jre Library Exposes Projects to Two Medium-Severity Vulnerabilities [Main Branch]

A security scan has flagged the widely used Google Guava library, version 30.1-jre, as containing two vulnerabilities with a highest severity score of 5.5 (Medium). The findings are specifically tied to the project's main branch and are marked as 'reachable,' indicating the vulnerable code paths are accessible and expl...

The Lab · 2026-04-18 16:22:31 · GitHub Issues

2. Guava 31.1-jre Library Exposes Workflow Bot App to Two Medium-Severity Vulnerabilities

A critical dependency scan has flagged the widely-used Google Guava library, version 31.1-jre, as containing two vulnerabilities within a workflow bot application's build. The most severe of these, CVE-2023-2976, carries a CVSS score of 5.5 and is classified as a medium-severity, directly reachable flaw. This finding i...

The Lab · 2026-04-18 16:22:35 · GitHub Issues

3. Critical Vulnerability Alert: json-schema-validator-2.2.14.jar Exposes Workflow Bot to Medium-Severity Flaw

A widely used Java JSON Schema validator library contains a reachable, medium-severity vulnerability, exposing dependent applications to potential exploitation. The flaw, tracked as CVE-2023-2976 with a CVSS score of 5.5, resides within the `json-schema-validator-2.2.14.jar` file. This library is a direct dependency of...