Security Advisory

CVE-2022-31744

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-12-22 00:00:00
Last updated 2025-04-15 18:29:18
Assigner mozilla
State PUBLISHED

Description

An attacker could have injected CSS into stylesheets accessible via internal URIs, such as resource:, and in doing so bypass a pages Content Security Policy. This vulnerability affects Firefox ESR < 91.11, Thunderbird < 102, Thunderbird < 91.11, and Firefox < 101.