Beveiligingsadvies

CVE-2021-4140

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-12-22 00:00:00
Laatst bijgewerkt 2025-04-16 15:55:20
Toegewezen door mozilla
CVSS-score 9.8
Status PUBLISHED

Beschrijving

It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbox. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5.