Security Advisory

CVE-2017-7803

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-06-11 21:00:00
Last updated 2024-08-05 16:12:28
Assigner mozilla
State PUBLISHED

Description

When a pages content security policy (CSP) header contains a "sandbox" directive, other directives are ignored. This results in the incorrect enforcement of CSP. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.