CVE-2022-34473

Publication date

2022-12-22 00:00:00

Family

mozilla

State

PUBLISHED

Description

The HTML Sanitizer should have sanitized the href attribute of SVG <use> tags; however it incorrectly did not sanitize xlink:href attributes. This vulnerability affects Firefox < 102.