Количество 19
Количество 19
BDU:2022-01448
Уязвимость браузера Mozilla Firefox, связанная с недостатками разграничения доступа, позволяющая нарушителю обойти введенные ограничения безопасности
ROS-20220322-01
Множественные уязвимости Mozilla Thunderbird
ROS-20220314-01
Множественные уязвимости Mozilla Firefox
CVE-2022-26384
If an attacker could control the contents of an iframe sandboxed with <code>allow-popups</code> but not <code>allow-scripts</code>, they were able to craft a link that, when clicked, would lead to JavaScript execution in violation of the sandbox. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7.
CVE-2022-26384
If an attacker could control the contents of an iframe sandboxed with <code>allow-popups</code> but not <code>allow-scripts</code>, they were able to craft a link that, when clicked, would lead to JavaScript execution in violation of the sandbox. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7.
CVE-2022-26384
If an attacker could control the contents of an iframe sandboxed with <code>allow-popups</code> but not <code>allow-scripts</code>, they were able to craft a link that, when clicked, would lead to JavaScript execution in violation of the sandbox. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7.
CVE-2022-26384
If an attacker could control the contents of an iframe sandboxed with ...
GHSA-cwm9-q742-vjcx
If an attacker could control the contents of an iframe sandboxed with <code>allow-popups</code> but not <code>allow-scripts</code>, they were able to craft a link that, when clicked, would lead to JavaScript execution in violation of the sandbox. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7.
openSUSE-SU-2022:0906-1
Security update for MozillaThunderbird
openSUSE-SU-2022:0821-1
Security update for MozillaFirefox
SUSE-SU-2022:0906-1
Security update for MozillaThunderbird
SUSE-SU-2022:0822-1
Security update for MozillaFirefox
SUSE-SU-2022:0821-1
Security update for MozillaFirefox
SUSE-SU-2022:0819-1
Security update for MozillaFirefox
SUSE-SU-2022:14906-1
Security update for MozillaFirefox
ELSA-2022-0824
ELSA-2022-0824: firefox security and bug fix update (CRITICAL)
ELSA-2022-0818
ELSA-2022-0818: firefox security update (CRITICAL)
ELSA-2022-0850
ELSA-2022-0850: thunderbird security update (IMPORTANT)
ELSA-2022-0845
ELSA-2022-0845: thunderbird security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2022-01448 Уязвимость браузера Mozilla Firefox, связанная с недостатками разграничения доступа, позволяющая нарушителю обойти введенные ограничения безопасности | CVSS3: 5.4 | 0% Низкий | больше 3 лет назад | |
ROS-20220322-01 Множественные уязвимости Mozilla Thunderbird | больше 3 лет назад | |||
ROS-20220314-01 Множественные уязвимости Mozilla Firefox | больше 3 лет назад | |||
CVE-2022-26384 If an attacker could control the contents of an iframe sandboxed with <code>allow-popups</code> but not <code>allow-scripts</code>, they were able to craft a link that, when clicked, would lead to JavaScript execution in violation of the sandbox. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7. | CVSS3: 9.6 | 0% Низкий | почти 3 года назад | |
CVE-2022-26384 If an attacker could control the contents of an iframe sandboxed with <code>allow-popups</code> but not <code>allow-scripts</code>, they were able to craft a link that, when clicked, would lead to JavaScript execution in violation of the sandbox. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7. | CVSS3: 9.6 | 0% Низкий | больше 3 лет назад | |
CVE-2022-26384 If an attacker could control the contents of an iframe sandboxed with <code>allow-popups</code> but not <code>allow-scripts</code>, they were able to craft a link that, when clicked, would lead to JavaScript execution in violation of the sandbox. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7. | CVSS3: 9.6 | 0% Низкий | почти 3 года назад | |
CVE-2022-26384 If an attacker could control the contents of an iframe sandboxed with ... | CVSS3: 9.6 | 0% Низкий | почти 3 года назад | |
GHSA-cwm9-q742-vjcx If an attacker could control the contents of an iframe sandboxed with <code>allow-popups</code> but not <code>allow-scripts</code>, they were able to craft a link that, when clicked, would lead to JavaScript execution in violation of the sandbox. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7. | CVSS3: 9.6 | 0% Низкий | почти 3 года назад | |
openSUSE-SU-2022:0906-1 Security update for MozillaThunderbird | больше 3 лет назад | |||
openSUSE-SU-2022:0821-1 Security update for MozillaFirefox | больше 3 лет назад | |||
SUSE-SU-2022:0906-1 Security update for MozillaThunderbird | больше 3 лет назад | |||
SUSE-SU-2022:0822-1 Security update for MozillaFirefox | больше 3 лет назад | |||
SUSE-SU-2022:0821-1 Security update for MozillaFirefox | больше 3 лет назад | |||
SUSE-SU-2022:0819-1 Security update for MozillaFirefox | больше 3 лет назад | |||
SUSE-SU-2022:14906-1 Security update for MozillaFirefox | больше 3 лет назад | |||
ELSA-2022-0824 ELSA-2022-0824: firefox security and bug fix update (CRITICAL) | больше 3 лет назад | |||
ELSA-2022-0818 ELSA-2022-0818: firefox security update (CRITICAL) | больше 3 лет назад | |||
ELSA-2022-0850 ELSA-2022-0850: thunderbird security update (IMPORTANT) | больше 3 лет назад | |||
ELSA-2022-0845 ELSA-2022-0845: thunderbird security update (IMPORTANT) | больше 3 лет назад |
Уязвимостей на страницу