Security Advisory

CVE-2020-6809

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-03-25 21:13:17
Last updated 2024-08-04 09:11:05
Assigner mozilla
State PUBLISHED

Description

When a Web Extension had the all-urls permission and made a fetch request with a mode set to same-origin, it was possible for the Web Extension to read local files. This vulnerability affects Firefox < 74.