ZeroHour

CVE-2024-11700

CVSS 3.1
8.1 high
EPSS
<1%p40
Published
()
Modified
Description

Malicious websites may have been able to perform user intent confirmation through tapjacking. This could have led to users unknowingly approving the launch of external applications, potentially exposing them to underlying vulnerabilities. This vulnerability affects Firefox < 133 and Thunderbird < 133.

Vendors
mozilla
Products
firefox, thunderbird
Weakness
CWE-1021
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.