Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-06856
HistoryJan 06, 2023 - 12:00 a.m.

Mozilla Firefox Information Disclosure Vulnerability (CNVD-2023-06856)

2023-01-0600:00:00
China National Vulnerability Database
www.cnvd.org.cn
16
mozilla firefox
open source
web browser
information disclosure
vulnerability
performance api
cross-domain resource
redirect
remote attacker
sensitive information

0.001 Low

EPSS

Percentile

35.6%

Mozilla Firefox is an open source web browser from the Mozilla Foundation, U.S. Mozilla Firefox is vulnerable to an information disclosure vulnerability that stems from the fact that the performance API does not properly hide whether a request for a cross-domain resource is aware of a redirect. A remote attacker could exploit the vulnerability to access potentially sensitive information.

CPENameOperatorVersion
mozilla firefoxlt100.0