CVE-2018-12397
UNKNOWN
Published 2019-02-28T18:00:00
Actions:
No CVSS data available
Description
A WebExtension can request access to local files without the warning prompt stating that the extension will "Access your data for all websites" being displayed to the user. This allows extensions to run content scripts in local pages without permission warnings when a local file is opened. This vulnerability affects Firefox ESR < 60.3 and Firefox < 63.
Available Exploits
No exploits available for this CVE.
Related News
No news articles found for this CVE.
Affected Products
Affected Versions:
Affected Versions:
References
Published: 2019-02-28T18:00:00
Last Modified: 2024-08-05T08:30:59.851Z
Copied to clipboard!