ZeroHour

CVE-2018-5179

CVSS 3.0
7.5 high
EPSS
1%p73
Published
()
Modified
Description

A service worker can send the activate event on itself periodically which allows it to run perpetually, allowing it to monitor activity by users. Affects all versions prior to Firefox 60.

Vendors
mozilla
Products
firefox
Weakness
CWE-772
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.