ZeroHour

CVE-2019-12383

CVSS 3.1
4.3 medium
EPSS
2%p81
Published
()
Modified
Description

Tor Browser before 8.0.1 has an information exposure vulnerability. It allows remote attackers to detect the browser's UI locale by measuring a button width, even if the user has a "Don't send my language" setting.

Vendors
torproject
Products
tor browser
Weakness
CWE-203
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.