Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hqww-p73m-wmm6

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

If upgrade-insecure-requests was specified in the Content Security Policy, and a link was dragged and dropped from that page, the link was not upgraded to https. This vulnerability affects Firefox < 70.

If upgrade-insecure-requests was specified in the Content Security Policy, and a link was dragged and dropped from that page, the link was not upgraded to https. This vulnerability affects Firefox < 70.

EPSS

Процентиль: 51%
0.00284
Низкий

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 6 лет назад

If upgrade-insecure-requests was specified in the Content Security Policy, and a link was dragged and dropped from that page, the link was not upgraded to https. This vulnerability affects Firefox < 70.

CVSS3: 4.3
nvd
около 6 лет назад

If upgrade-insecure-requests was specified in the Content Security Policy, and a link was dragged and dropped from that page, the link was not upgraded to https. This vulnerability affects Firefox < 70.

CVSS3: 4.3
debian
около 6 лет назад

If upgrade-insecure-requests was specified in the Content Security Pol ...

CVSS3: 4.3
fstec
больше 6 лет назад

Уязвимость политики безопасности веб-браузера Firefox, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю оказать воздействие на целостность данных

EPSS

Процентиль: 51%
0.00284
Низкий

Дефекты

CWE-20