Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x2m9-q3vv-hr85

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

By navigating a tab using the history API, an attacker could cause the address bar to display the incorrect domain (with the https:// scheme, a blocked port number such as '1', and without a lock icon) while controlling the page contents. This vulnerability affects Firefox < 70.

By navigating a tab using the history API, an attacker could cause the address bar to display the incorrect domain (with the https:// scheme, a blocked port number such as '1', and without a lock icon) while controlling the page contents. This vulnerability affects Firefox < 70.

EPSS

Процентиль: 51%
0.00284
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 5 лет назад

By navigating a tab using the history API, an attacker could cause the address bar to display the incorrect domain (with the https:// scheme, a blocked port number such as '1', and without a lock icon) while controlling the page contents. This vulnerability affects Firefox < 70.

CVSS3: 4.3
redhat
около 5 лет назад

By navigating a tab using the history API, an attacker could cause the address bar to display the incorrect domain (with the https:// scheme, a blocked port number such as '1', and without a lock icon) while controlling the page contents. This vulnerability affects Firefox < 70.

CVSS3: 4.3
nvd
около 5 лет назад

By navigating a tab using the history API, an attacker could cause the address bar to display the incorrect domain (with the https:// scheme, a blocked port number such as '1', and without a lock icon) while controlling the page contents. This vulnerability affects Firefox < 70.

CVSS3: 4.3
debian
около 5 лет назад

By navigating a tab using the history API, an attacker could cause the ...

EPSS

Процентиль: 51%
0.00284
Низкий