Security Advisory

CVE-2023-3482

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-07-05 09:01:13
Last updated 2025-02-13 16:55:39
Assigner mozilla
CVSS score not scored
State PUBLISHED

Description

When Firefox is configured to block storage of all cookies, it was still possible to store data in localstorage by using an iframe with a source of 'about:blank'. This could have led to malicious websites storing tracking data without permission. This vulnerability affects Firefox < 115.