Логотип exploitDog
bind:CVE-2022-28284
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-28284

Количество 5

Количество 5

ubuntu логотип

CVE-2022-28284

около 3 лет назад

SVG's <code>&lt;use&gt;</code> element could have been used to load unexpected content that could have executed script in certain circumstances. While the specification seems to allow this, other browsers do not, and web developers relied on this property for script security so gecko's implementation was aligned with theirs. This vulnerability affects Firefox < 99.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2022-28284

около 3 лет назад

SVG's <code>&lt;use&gt;</code> element could have been used to load unexpected content that could have executed script in certain circumstances. While the specification seems to allow this, other browsers do not, and web developers relied on this property for script security so gecko's implementation was aligned with theirs. This vulnerability affects Firefox < 99.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2022-28284

около 3 лет назад

SVG's <code>&lt;use&gt;</code> element could have been used to load un ...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-5g34-x2rf-m7v6

около 3 лет назад

SVG's <code>&lt;use&gt;</code> element could have been used to load unexpected content that could have executed script in certain circumstances. While the specification seems to allow this, other browsers do not, and web developers relied on this property for script security so gecko's implementation was aligned with theirs. This vulnerability affects Firefox < 99.

CVSS3: 8.8
EPSS: Низкий
fstec логотип

BDU:2022-05101

почти 4 года назад

Уязвимость реализации элемента SVG <use> браузера Mozilla Firefox, позволяющая нарушителю выполнить произвольный код JavaScript

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-28284

SVG's <code>&lt;use&gt;</code> element could have been used to load unexpected content that could have executed script in certain circumstances. While the specification seems to allow this, other browsers do not, and web developers relied on this property for script security so gecko's implementation was aligned with theirs. This vulnerability affects Firefox < 99.

CVSS3: 8.8
0%
Низкий
около 3 лет назад
nvd логотип
CVE-2022-28284

SVG's <code>&lt;use&gt;</code> element could have been used to load unexpected content that could have executed script in certain circumstances. While the specification seems to allow this, other browsers do not, and web developers relied on this property for script security so gecko's implementation was aligned with theirs. This vulnerability affects Firefox < 99.

CVSS3: 8.8
0%
Низкий
около 3 лет назад
debian логотип
CVE-2022-28284

SVG's <code>&lt;use&gt;</code> element could have been used to load un ...

CVSS3: 8.8
0%
Низкий
около 3 лет назад
github логотип
GHSA-5g34-x2rf-m7v6

SVG's <code>&lt;use&gt;</code> element could have been used to load unexpected content that could have executed script in certain circumstances. While the specification seems to allow this, other browsers do not, and web developers relied on this property for script security so gecko's implementation was aligned with theirs. This vulnerability affects Firefox < 99.

CVSS3: 8.8
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2022-05101

Уязвимость реализации элемента SVG <use> браузера Mozilla Firefox, позволяющая нарушителю выполнить произвольный код JavaScript

CVSS3: 6.1
0%
Низкий
почти 4 года назад

Уязвимостей на страницу