Security Advisory

CVE-2024-6612

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-07-09 14:26:00
Last updated 2025-10-30 16:15:05
Assigner mozilla
State PUBLISHED

Description

CSP violations generated links in the console tab of the developer tools, pointing to the violating resource. This caused a DNS prefetch which leaked that a CSP violation happened. This vulnerability affects Firefox < 128 and Thunderbird < 128.