CVE-2022-22755

Publication date

2022-12-22 00:00:00

Family

mozilla

State

PUBLISHED

Description

By using XSL Transforms, a malicious webserver could have served a user an XSL document that would continue to execute JavaScript (within the bounds of the same-origin policy) even after the tab was closed. This vulnerability affects Firefox < 97.