Security Advisory

CVE-2014-1526

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-04-30 10:00:00
Last updated 2024-08-06 09:42:36
Assigner mozilla
State PUBLISHED

Description

The XrayWrapper implementation in Mozilla Firefox before 29.0 and SeaMonkey before 2.26 allows user-assisted remote attackers to bypass intended access restrictions via a crafted web site that is visited in the debugger, leading to unwrapping operations and calls to DOM methods on the unwrapped objects.