FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

mozilla products -- spoofing attack

Affected packages
firefox < 129,2

Details

VuXML ID d0ac9a17-5e68-11ef-b8cc-b42e991fc52e
Discovery 2024-08-06
Entry 2024-08-19

security@mozilla.org reports:

Select options could obscure the fullscreen notification dialog. This could be used by a malicious site to perform a spoofing attack. This vulnerability affects Firefox < 129, Firefox ESR < 128.1, and Thunderbird < 128.1.

References

CVE Name CVE-2024-7518
URL https://nvd.nist.gov/vuln/detail/CVE-2024-7518