Security Advisory

CVE-2022-29916

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-12-22 00:00:00
Last updated 2025-04-15 15:08:08
Assigner mozilla
State PUBLISHED

Description

Firefox behaved slightly differently for already known resources when loading CSS resources involving CSS variables. This could have been used to probe the browser history. This vulnerability affects Thunderbird < 91.9, Firefox ESR < 91.9, and Firefox < 100.