CVE-2022-36315

CVSS v3.1 4.3 (Medium)
43% Progress
EPSS 0.08 % (34th)
0.08% Progress
Affected Products 1
Advisories 4

When loading a script with Subresource Integrity, attackers with an injection capability could trigger the reuse of previously cached entries with incorrect, different integrity metadata. This vulnerability affects Firefox < 103.

Weaknesses
CWE-NVD-noinfo
CVE Status
PUBLISHED
CNA
Mozilla Corporation
Published Date
2022-12-22 20:15:35
(21 months ago)
Updated Date
2023-01-04 04:23:06
(20 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox prior 103.0 version cpe:2.3:a:mozilla:firefox < 103.0
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...