Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q3j6-jpv5-vp5g

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

When the pointer lock is enabled by a website though requestPointerLock(), no user notification is given. This could allow a malicious website to hijack the mouse pointer and confuse users. This vulnerability affects Firefox < 69.0.1.

When the pointer lock is enabled by a website though requestPointerLock(), no user notification is given. This could allow a malicious website to hijack the mouse pointer and confuse users. This vulnerability affects Firefox < 69.0.1.

EPSS

Процентиль: 47%
0.00624
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
почти 7 лет назад

When the pointer lock is enabled by a website though requestPointerLock(), no user notification is given. This could allow a malicious website to hijack the mouse pointer and confuse users. This vulnerability affects Firefox < 69.0.1.

CVSS3: 4.3
redhat
почти 7 лет назад

When the pointer lock is enabled by a website though requestPointerLock(), no user notification is given. This could allow a malicious website to hijack the mouse pointer and confuse users. This vulnerability affects Firefox < 69.0.1.

CVSS3: 4.3
nvd
почти 7 лет назад

When the pointer lock is enabled by a website though requestPointerLock(), no user notification is given. This could allow a malicious website to hijack the mouse pointer and confuse users. This vulnerability affects Firefox < 69.0.1.

CVSS3: 4.3
debian
почти 7 лет назад

When the pointer lock is enabled by a website though requestPointerLoc ...

CVSS3: 4.3
fstec
почти 7 лет назад

Уязвимость функции requestPointerLock() веб-браузера Firefox, позволяющая нарушителю оказать воздействие на целостность данных

EPSS

Процентиль: 47%
0.00624
Низкий