ZeroHour

CVE-2022-29914

CVSS 3.1
6.5 medium
EPSS
<1%p48
Published
()
Modified
Description

When reusing existing popups Firefox would have allowed them to cover the fullscreen notification UI, which could have enabled browser spoofing attacks. This vulnerability affects Thunderbird < 91.9, Firefox ESR < 91.9, and Firefox < 100.

Vendors
mozilla
Products
firefox, firefox esr, thunderbird
Weakness
CWE-1021
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.