CVE-2023-35945: Understanding Azure Linux's nghttp2 Risk & Supply Chain Security
The disclosure of CVE-2023-35945, a critical vulnerability in the nghttp2 library used by the Envoy proxy, has exposed fundamental challenges in modern software supply chain security, particularly...