If a site had been granted the permission to open popup windows, it could cause Select elements to appear on top of another site to perform a spoofing attack. This vulnerability affects Firefox < 130, Firefox ESR < 128.2, and Thunderbird < 128.2.
References
Link | Resource |
---|---|
https://bugzilla.mozilla.org/show_bug.cgi?id=1907032 | Issue Tracking Permissions Required |
https://bugzilla.mozilla.org/show_bug.cgi?id=1909163 | Issue Tracking Permissions Required |
https://bugzilla.mozilla.org/show_bug.cgi?id=1909529 | Issue Tracking Permissions Required |
https://www.mozilla.org/security/advisories/mfsa2024-39/ | Vendor Advisory |
https://www.mozilla.org/security/advisories/mfsa2024-40/ | Vendor Advisory |
https://www.mozilla.org/security/advisories/mfsa2024-43/ |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2024-09-03 13:15
Updated : 2024-10-30 17:35
NVD link : CVE-2024-8386
Mitre link : CVE-2024-8386
CVE.ORG link : CVE-2024-8386
JSON object : View
Products Affected
mozilla
- firefox_esr
- firefox