Mozilla Firefox
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*
- < 139
A vulnerability in Mozilla Firefox has been identified, where the Devtools response preview feature disregarded Content Security Policy (CSP) headers. This oversight could have facilitated content injection attacks. The issue affects Firefox versions prior to 139.
Exploitation of this vulnerability could have led to content injection attacks.
Users can update to Firefox version 139 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.