6.9 Medium
AI Score
Confidence
High
0.002 Low
EPSS
Percentile
55.2%
When a Web Extension had the all-urls permission and made a fetch request with a mode set to ‘same-origin’, it was possible for the Web Extension to read local files. This vulnerability affects Firefox < 74.
bugzilla.mozilla.org/show_bug.cgi?id=1420296
www.mozilla.org/security/advisories/mfsa2020-08/