CVE-2018-5114
—CVSS 3.0
5.3 medium
EPSS
2%p74
Published
()
Modified
Description
If an existing cookie is changed to be "HttpOnly" while a document is open, the original value remains accessible through script until that document is closed. Network requests correctly use the changed HttpOnly cookie. This vulnerability affects Firefox < 58.
In the news0 stories
No ingested article mentions this CVE yet.