Lucene search

K
osvGoogleOSV:USN-5434-1
HistoryMay 23, 2022 - 1:49 p.m.

firefox vulnerabilities

2022-05-2313:49:37
Google
osv.dev
9

7.2 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

68.3%

It was discovered that the methods of an Array object could be corrupted
as a result of prototype pollution by sending a message to the parent
process. If a user were tricked into opening a specially crafted website,
an attacker could exploit this to execute JavaScript in a privileged
context.