CVE-2021-24000
CVSS v3.1
3.1 (Low)
CVSS v2.0
2.6 (Low)
EPSS
0.08 % (37th)
Affected Products
1
Advisories
4
A race condition with requestPointerLock() and setTimeout() could have resulted in a user interacting with one tab when they believed they were on a separate tab. In conjunction with certain elements (such as <input type="file">) this could have led to an attack where a user was confused about the origin of the webpage and potentially disclosed information they did not intend to. This vulnerability affects Firefox < 88.
Weaknesses
- CVE Status
- PUBLISHED
- CNA
- Mozilla Corporation
- Published Date
-
2021-06-24 14:15:09
(3 years ago) - Updated Date
-
2021-07-01 18:25:01
(3 years ago)
Affected Products
Loading...
Loading...
Configuration #1
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...