Proof-of-concept exploit code has been published for a critical remote code execution flaw in protobuf.js, a widely used ...
The CVSS‑9.3 vulnerability allows unauthenticated remote code execution on exposed Marimo servers and was exploited in the wild shortly after disclosure, Sysdig says.