Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-6809

Опубликовано: 25 мар. 2020
Источник: debian
EPSS Низкий

Описание

When a Web Extension had the all-urls permission and made a fetch request with a mode set to 'same-origin', it was possible for the Web Extension to read local files. This vulnerability affects Firefox < 74.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed74.0-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2020-08/#CVE-2020-6809

EPSS

Процентиль: 64%
0.00458
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 6 лет назад

When a Web Extension had the all-urls permission and made a fetch request with a mode set to 'same-origin', it was possible for the Web Extension to read local files. This vulnerability affects Firefox < 74.

CVSS3: 7.5
redhat
почти 6 лет назад

When a Web Extension had the all-urls permission and made a fetch request with a mode set to 'same-origin', it was possible for the Web Extension to read local files. This vulnerability affects Firefox < 74.

CVSS3: 7.5
nvd
почти 6 лет назад

When a Web Extension had the all-urls permission and made a fetch request with a mode set to 'same-origin', it was possible for the Web Extension to read local files. This vulnerability affects Firefox < 74.

github
больше 3 лет назад

When a Web Extension had the all-urls permission and made a fetch request with a mode set to 'same-origin', it was possible for the Web Extension to read local files. This vulnerability affects Firefox < 74.

EPSS

Процентиль: 64%
0.00458
Низкий