CVE-2022-31743

CVSS v3.1 6.5 (Medium)
65% Progress
EPSS 0.08 % (35th)
0.08% Progress
Affected Products 1
Advisories 4

Firefox's HTML parser did not correctly interpret HTML comment tags, resulting in an incongruity with other browsers. This could have been used to escape HTML comments on pages that put user-controlled data in them. This vulnerability affects Firefox < 101.

Weaknesses
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE Status
PUBLISHED
CNA
Mozilla Corporation
Published Date
2022-12-22 20:15:29
(21 months ago)
Updated Date
2023-01-03 21:20:20
(20 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox prior 101.0 version cpe:2.3:a:mozilla:firefox < 101.0
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...