Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7mpv-6jjp-xm5c

Опубликовано: 21 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

When an https: web page created a pop-up from a "javascript:" URL, that pop-up was incorrectly allowed to load blockable content such as iframes from insecure http: URLs This vulnerability affects Firefox < 120.

When an https: web page created a pop-up from a "javascript:" URL, that pop-up was incorrectly allowed to load blockable content such as iframes from insecure http: URLs This vulnerability affects Firefox < 120.

EPSS

Процентиль: 35%
0.0014
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 2 лет назад

When an https: web page created a pop-up from a "javascript:" URL, that pop-up was incorrectly allowed to load blockable content such as iframes from insecure http: URLs This vulnerability affects Firefox < 120.

CVSS3: 6.5
nvd
около 2 лет назад

When an https: web page created a pop-up from a "javascript:" URL, that pop-up was incorrectly allowed to load blockable content such as iframes from insecure http: URLs This vulnerability affects Firefox < 120.

CVSS3: 6.5
debian
около 2 лет назад

When an https: web page created a pop-up from a "javascript:" URL, tha ...

CVSS3: 6.5
fstec
около 2 лет назад

Уязвимость браузера Mozilla Firefox, связанная с переадресацией URL на ненадежный сайт, позволяющая нарушителю проводить фишинг-атаки

EPSS

Процентиль: 35%
0.0014
Низкий

6.5 Medium

CVSS3