Stats
- First seen
- December 2024
- Last seen
- October 2026
Description
Detects web content that exploits CVE-2022-2480 through a service worker whose install event never settles, which keeps the vulnerable object alive while a JavaScript file downloads. The rule matches the never-resolving promise pattern from public exploits.