Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mgfp-hcp6-39f4

Опубликовано: 09 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

A Universal XSS vulnerability was present in Firefox for Android resulting from improper sanitization when processing a URL scanned from a QR code. This bug only affects Firefox for Android. Other operating systems are unaffected.. This vulnerability affects Firefox < 94.

A Universal XSS vulnerability was present in Firefox for Android resulting from improper sanitization when processing a URL scanned from a QR code. This bug only affects Firefox for Android. Other operating systems are unaffected.. This vulnerability affects Firefox < 94.

EPSS

Процентиль: 91%
0.07071
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
ubuntu
около 4 лет назад

A Universal XSS vulnerability was present in Firefox for Android resulting from improper sanitization when processing a URL scanned from a QR code. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 94.

CVSS3: 6.1
nvd
около 4 лет назад

A Universal XSS vulnerability was present in Firefox for Android resulting from improper sanitization when processing a URL scanned from a QR code. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 94.

CVSS3: 6.1
debian
около 4 лет назад

A Universal XSS vulnerability was present in Firefox for Android resul ...

CVSS3: 6.1
fstec
больше 4 лет назад

Уязвимость браузера Mozilla Firefox для Android, связанная с неправильной очисткой данных при обработке URL-адреса, отсканированного из QR-кода, позволяющая нарушителю провести атаку межсайтового скриптинга (XSS)

EPSS

Процентиль: 91%
0.07071
Низкий

Дефекты

CWE-79