Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-03055
HistoryJan 06, 2023 - 12:00 a.m.

Mozilla Firefox Injection Vulnerability (CNVD-2023-03055)

2023-01-0600:00:00
China National Vulnerability Database
www.cnvd.org.cn
35
mozilla firefox
injection vulnerability
executable scripts
web browser
mozilla foundation
unsafe-hashes
csp directive
attacker
exploit

EPSS

0.003

Percentile

70.5%

Mozilla Firefox is an open source web browser from the Mozilla Foundation, U.S. An injection vulnerability exists in Mozilla Firefox, which stems from a failure to execute the Unsafe-Hashes CSP directive. An attacker could exploit this vulnerability to inject executable scripts.