Lucene search

K
redhatcveRedhat.comRH:CVE-2017-7808
HistoryAug 09, 2017 - 1:54 a.m.

CVE-2017-7808

2017-08-0901:54:08
redhat.com
access.redhat.com
11

0.002 Low

EPSS

Percentile

55.8%

A content security policy (CSP) “frame-ancestors” directive containing origins with paths allows for comparisons against those paths instead of the origin. This results in a cross-origin information leak of this path information. This vulnerability affects Firefox < 55.