Описание
The sourceMapURL feature in devtools was missing security checks that would have allowed a webpage to attempt to include local files or other files that should have been inaccessible. This vulnerability affects Firefox < 99.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 99.0+build2-0ubuntu0.18.04.2 |
| devel | released | 1:1snap1-0ubuntu1 |
| esm-infra-legacy/trusty | DNE | |
| esm-infra/focal | DNE | |
| focal | released | 99.0+build2-0ubuntu0.20.04.2 |
| impish | released | 99.0+build2-0ubuntu0.21.10.2 |
| jammy | released | 1:1snap1-0ubuntu1 |
| kinetic | released | 1:1snap1-0ubuntu1 |
| lunar | released | 1:1snap1-0ubuntu1 |
| trusty | ignored | end of standard support |
Показывать по
EPSS
6.5 Medium
CVSS3
Связанные уязвимости
The sourceMapURL feature in devtools was missing security checks that would have allowed a webpage to attempt to include local files or other files that should have been inaccessible. This vulnerability affects Firefox < 99.
The sourceMapURL feature in devtools was missing security checks that ...
The sourceMapURL feature in devtools was missing security checks that would have allowed a webpage to attempt to include local files or other files that should have been inaccessible. This vulnerability affects Firefox < 99.
Уязвимость функции sourceMapURL набора инструментов для веб-разработки DevTools браузера Firefox, позволяющая нарушителю раскрыть защищаемую информацию
EPSS
6.5 Medium
CVSS3