Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-77mp-cm2p-44gj

Опубликовано: 02 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

When dragging and dropping an image cross-origin, the image's size could potentially be leaked. This behavior was shipped in 109 and caused web compatibility problems as well as this security concern, so the behavior was disabled until further review. This vulnerability affects Firefox < 110.

When dragging and dropping an image cross-origin, the image's size could potentially be leaked. This behavior was shipped in 109 and caused web compatibility problems as well as this security concern, so the behavior was disabled until further review. This vulnerability affects Firefox < 110.

EPSS

Процентиль: 52%
0.00767
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-203

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 3 лет назад

When dragging and dropping an image cross-origin, the image's size could potentially be leaked. This behavior was shipped in 109 and caused web compatibility problems as well as this security concern, so the behavior was disabled until further review. This vulnerability affects Firefox < 110.

redhat
больше 3 лет назад

When dragging and dropping an image cross-origin, the image's size could potentially be leaked. This behavior was shipped in 109 and caused web compatibility problems as well as this security concern, so the behavior was disabled until further review. This vulnerability affects Firefox < 110.

CVSS3: 6.5
nvd
около 3 лет назад

When dragging and dropping an image cross-origin, the image's size could potentially be leaked. This behavior was shipped in 109 and caused web compatibility problems as well as this security concern, so the behavior was disabled until further review. This vulnerability affects Firefox < 110.

msrc
12 месяцев назад

When dragging and dropping an image cross-origin, the image's size could potentially be leaked. This behavior was shipped in 109 and caused web compatibility problems as well as this security concern, so the behavior was disabled until further review. This vulnerability affects Firefox < 110.

CVSS3: 6.5
debian
около 3 лет назад

When dragging and dropping an image cross-origin, the image's size cou ...

EPSS

Процентиль: 52%
0.00767
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-203