Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-23968
HistoryFeb 26, 2021 - 2:15 a.m.

Design/Logic Flaw

2021-02-2602:15:00
PRIOn knowledge base
www.prio-n.com
6

4.8 Medium

AI Score

Confidence

Low

0.011 Low

EPSS

Percentile

84.3%

If Content Security Policy blocked frame navigation, the full destination of a redirect served in the frame was reported in the violation report; as opposed to the original frame URI. This could be used to leak sensitive information contained in such URIs. This vulnerability affects Firefox < 86, Thunderbird < 78.8, and Firefox ESR < 78.8.