Mozilla Firefox
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*
- < 145
A same-origin policy bypass vulnerability has been identified in the DOM: Workers component of Mozilla Firefox. This issue affects Firefox versions prior to 145 and Firefox ESR versions prior to 140.5. The vulnerability allows for unauthorized cross-origin interactions by bypassing the same-origin policy, which could lead to potential security risks such as data leakage or manipulation.
Exploitation of this vulnerability allows for a same-origin policy bypass, enabling cross-origin interactions that could lead to data leakage or manipulation.
Users can upgrade to Firefox 145 or Firefox ESR 140.5 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.