CVE-2022-34477

CVSS v3.1 7.5 (High)
75% Progress
EPSS 0.16 % (53th)
0.16% Progress
Affected Products 1
Advisories 7

The MediaError message property should be consistent to avoid leaking information about cross-origin resources; however for a same-site cross-origin resource, the message could have leaked information enabling XS-Leaks attacks. This vulnerability affects Firefox < 102.

Weaknesses
CWE-NVD-noinfo
CVE Status
PUBLISHED
CNA
Mozilla Corporation
Published Date
2022-12-22 20:15:32
(21 months ago)
Updated Date
2023-01-03 18:36:13
(20 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox prior 102.0 version cpe:2.3:a:mozilla:firefox < 102.0
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...