Beveiligingsadvies

CVE-2024-1550

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-02-20 13:21:35
Laatst bijgewerkt 2025-03-27 20:05:58
Toegewezen door mozilla
CVSS-score 6.1
Status PUBLISHED

Beschrijving

A malicious website could have used a combination of exiting fullscreen mode and `requestPointerLock` to cause the user's mouse to be re-positioned unexpectedly, which could have led to user confusion and inadvertently granting permissions they did not intend to grant. This vulnerability affects Firefox < 123, Firefox ESR < 115.8, and Thunderbird < 115.8.