Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cpxj-fx45-9pgm

Опубликовано: 26 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

An attacker could cause a select dropdown to be shown over another tab; this could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 133, Firefox ESR < 128.5, Thunderbird < 133, and Thunderbird < 128.5.

An attacker could cause a select dropdown to be shown over another tab; this could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 133, Firefox ESR < 128.5, Thunderbird < 133, and Thunderbird < 128.5.

EPSS

Процентиль: 33%
0.00128
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-290

Связанные уязвимости

CVSS3: 4.3
ubuntu
9 месяцев назад

An attacker could cause a select dropdown to be shown over another tab; this could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 133, Firefox ESR < 128.5, Thunderbird < 133, and Thunderbird < 128.5.

CVSS3: 5.4
redhat
9 месяцев назад

An attacker could cause a select dropdown to be shown over another tab; this could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 133, Firefox ESR < 128.5, Thunderbird < 133, and Thunderbird < 128.5.

CVSS3: 4.3
nvd
9 месяцев назад

An attacker could cause a select dropdown to be shown over another tab; this could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 133, Firefox ESR < 128.5, Thunderbird < 133, and Thunderbird < 128.5.

CVSS3: 4.3
debian
9 месяцев назад

An attacker could cause a select dropdown to be shown over another tab ...

CVSS3: 4.3
fstec
9 месяцев назад

Уязвимость браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, связанная с некорректным ограничением визуализированных слоев пользовательского интерфейса, позволяющая нарушителю проводить спуфинг-атаки

EPSS

Процентиль: 33%
0.00128
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-290