Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-38473
HistoryDec 22, 2022 - 8:15 p.m.

Cross site scripting

2022-12-2220:15:00
PRIOn knowledge base
www.prio-n.com
10
cross-origin iframe
xslt document
parent domain permissions
thunderbird
firefox
vulnerability

8.1 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

65.7%

A cross-origin iframe referencing an XSLT document would inherit the parent domain’s permissions (such as microphone or camera access). This vulnerability affects Thunderbird < 102.2, Thunderbird < 91.13, Firefox ESR < 91.13, Firefox ESR < 102.2, and Firefox < 104.