Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vj37-39rq-5f3g

Опубликовано: 09 дек. 2021
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

WebExtensions with the correct permissions were able to create and install ServiceWorkers for third-party websites that would not have been uninstalled with the extension. This vulnerability affects Firefox < 95.

WebExtensions with the correct permissions were able to create and install ServiceWorkers for third-party websites that would not have been uninstalled with the extension. This vulnerability affects Firefox < 95.

EPSS

Процентиль: 58%
0.00364
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 3 лет назад

WebExtensions with the correct permissions were able to create and install ServiceWorkers for third-party websites that would not have been uninstalled with the extension. This vulnerability affects Firefox < 95.

CVSS3: 6.5
nvd
больше 3 лет назад

WebExtensions with the correct permissions were able to create and install ServiceWorkers for third-party websites that would not have been uninstalled with the extension. This vulnerability affects Firefox < 95.

CVSS3: 6.5
debian
больше 3 лет назад

WebExtensions with the correct permissions were able to create and ins ...

EPSS

Процентиль: 58%
0.00364
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-732