Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:34153
HistoryFeb 11, 2022 - 7:16 p.m.

Remote Code Execution (RCE)

2022-02-1119:16:52
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
27

0.002 Low

EPSS

Percentile

55.4%

firefox is vulnerable to remote code execution. The vulnerability exists due to a lack of validation of the boundaries of same-origin policy, allowing an attacker to use XSL transform to serve a user an XSL with maliciously crafted javascript.