Lucene search

K
redhatcveRedhat.comRH:CVE-2018-12370
HistoryJun 27, 2018 - 1:23 a.m.

CVE-2018-12370

2018-06-2701:23:58
redhat.com
access.redhat.com
8

0.002 Low

EPSS

Percentile

60.8%

In Reader View SameSite cookie protections are not checked on exiting. This allows for a payload to be triggered when Reader View is exited if loaded by a malicious site while Reader mode is active, bypassing CSRF protections. This vulnerability affects Firefox < 61.