Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fffc-4hjp-2r9v

Опубликовано: 14 мая 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

If the browser.privatebrowsing.autostart preference is enabled, IndexedDB files were not properly deleted when the window was closed. This preference is disabled by default in Firefox. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.

If the browser.privatebrowsing.autostart preference is enabled, IndexedDB files were not properly deleted when the window was closed. This preference is disabled by default in Firefox. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.

EPSS

Процентиль: 65%
0.00502
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-359
CWE-459

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 1 года назад

If the `browser.privatebrowsing.autostart` preference is enabled, IndexedDB files were not properly deleted when the window was closed. This preference is disabled by default in Firefox. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.

CVSS3: 6.1
redhat
около 1 года назад

If the `browser.privatebrowsing.autostart` preference is enabled, IndexedDB files were not properly deleted when the window was closed. This preference is disabled by default in Firefox. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.

CVSS3: 4.3
nvd
около 1 года назад

If the `browser.privatebrowsing.autostart` preference is enabled, IndexedDB files were not properly deleted when the window was closed. This preference is disabled by default in Firefox. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.

CVSS3: 4.3
debian
около 1 года назад

If the `browser.privatebrowsing.autostart` preference is enabled, Inde ...

CVSS3: 4.3
fstec
около 1 года назад

Уязвимость веб-браузеров Firefox ESR, Firefox и почтового клиента Thunderbird, связанная с ошибками преобразования типов данных, позволяющая нарушителю получить доступ к конфиденциальным данным

EPSS

Процентиль: 65%
0.00502
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-359
CWE-459