Lucene search

K
cvelistMozillaCVELIST:CVE-2020-26979
HistoryJan 07, 2021 - 1:51 p.m.

CVE-2020-26979

2021-01-0713:51:22
mozilla
www.cve.org
1

6.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

44.6%

When a user typed a URL in the address bar or the search bar and quickly hit the enter key, a website could sometimes capture that event and then redirect the user before navigation occurred to the desired, entered address. To construct a convincing spoof the attacker would have had to guess what the user was typing, perhaps by suggesting it. This vulnerability affects Firefox < 84.

CNA Affected

[
  {
    "product": "Firefox",
    "vendor": "Mozilla",
    "versions": [
      {
        "lessThan": "84",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

6.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

44.6%