Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q3j6-jpv5-vp5g

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

When the pointer lock is enabled by a website though requestPointerLock(), no user notification is given. This could allow a malicious website to hijack the mouse pointer and confuse users. This vulnerability affects Firefox < 69.0.1.

When the pointer lock is enabled by a website though requestPointerLock(), no user notification is given. This could allow a malicious website to hijack the mouse pointer and confuse users. This vulnerability affects Firefox < 69.0.1.

EPSS

Процентиль: 40%
0.00186
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 6 лет назад

When the pointer lock is enabled by a website though requestPointerLock(), no user notification is given. This could allow a malicious website to hijack the mouse pointer and confuse users. This vulnerability affects Firefox < 69.0.1.

CVSS3: 4.3
redhat
больше 6 лет назад

When the pointer lock is enabled by a website though requestPointerLock(), no user notification is given. This could allow a malicious website to hijack the mouse pointer and confuse users. This vulnerability affects Firefox < 69.0.1.

CVSS3: 4.3
nvd
больше 6 лет назад

When the pointer lock is enabled by a website though requestPointerLock(), no user notification is given. This could allow a malicious website to hijack the mouse pointer and confuse users. This vulnerability affects Firefox < 69.0.1.

CVSS3: 4.3
debian
больше 6 лет назад

When the pointer lock is enabled by a website though requestPointerLoc ...

CVSS3: 4.3
fstec
больше 6 лет назад

Уязвимость функции requestPointerLock() веб-браузера Firefox, позволяющая нарушителю оказать воздействие на целостность данных

EPSS

Процентиль: 40%
0.00186
Низкий