Security Advisory

CVE-2022-36314

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-12-22 00:00:00
Last updated 2025-04-15 17:33:52
Assigner mozilla
State PUBLISHED

Description

When opening a Windows shortcut from the local filesystem, an attacker could supply a remote path that would lead to unexpected network requests from the operating system.<br>This bug only affects Firefox for Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox ESR < 102.1, Firefox < 103, and Thunderbird < 102.1.