Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36229
HistoryJun 30, 2022 - 9:55 p.m.

Improper Access Control

2022-06-3021:55:13
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

0.001 Low

EPSS

Percentile

33.0%

firefox is vulnerable to improper access control. The vulnerability exists when downloading an update for an addon because the downloaded addon update’s version was not verified to match the version selected from the manifest which allows an attacker to trick the browser into downgrading the addon to a prior version.