Security Advisory

CVE-2020-6809

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-03-25 21:13:17
Last updated 2024-08-04 09:11:05
Assigner mozilla
CVSS score not scored
State PUBLISHED

Description

When a Web Extension had the all-urls permission and made a fetch request with a mode set to 'same-origin', it was possible for the Web Extension to read local files. This vulnerability affects Firefox < 74.