The executable file warning was not presented when downloading .msix, .msixbundle, .appx, and .appxbundle files, which can run commands on a user's computer.  
*Note: This issue only affected Windows operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.
                
            References
                    | Link | Resource | 
|---|---|
| https://bugzilla.mozilla.org/show_bug.cgi?id=1847180 | Issue Tracking Permissions Required Vendor Advisory | 
| https://www.mozilla.org/security/advisories/mfsa2023-45/ | Vendor Advisory | 
| https://www.mozilla.org/security/advisories/mfsa2023-46/ | Vendor Advisory | 
| https://www.mozilla.org/security/advisories/mfsa2023-47/ | Vendor Advisory | 
| https://bugzilla.mozilla.org/show_bug.cgi?id=1847180 | Issue Tracking Permissions Required Vendor Advisory | 
| https://www.mozilla.org/security/advisories/mfsa2023-45/ | Vendor Advisory | 
| https://www.mozilla.org/security/advisories/mfsa2023-46/ | Vendor Advisory | 
| https://www.mozilla.org/security/advisories/mfsa2023-47/ | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
History
                    No history.
Information
                Published : 2023-10-25 18:17
Updated : 2024-11-21 08:42
NVD link : CVE-2023-5727
Mitre link : CVE-2023-5727
CVE.ORG link : CVE-2023-5727
JSON object : View
Products Affected
                mozilla
- firefox
- thunderbird
- firefox_esr
microsoft
- windows
CWE
                