Loading HuntDB...

GHSA-5xqq-gc4j-mg29

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

It is possible to delete an IndexedDB key value and subsequently try to extract it during conversion. This results in a use-after-free and a potentially exploitable crash. This vulnerability affects Firefox < 69, Thunderbird < 68.1, Thunderbird < 60.9, Firefox ESR < 60.9, and Firefox ESR < 68.1.

Related CVEs

Key Information

GHSA ID
GHSA-5xqq-gc4j-mg29
Published
May 24, 2022 4:57 PM
Last Modified
April 4, 2024 2:01 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 9, 2025 6:37 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.