Loading HuntDB...

GHSA-c2fx-6qc9-26x9

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Relative URLs starting with three slashes were incorrectly parsed, and a path-traversal "/../" part in the path could be used to override the specified host. This could contribute to security problems in web sites. This vulnerability affects Firefox < 120, Firefox < 115.5, and Thunderbird < 115.5.0.

Related CVEs

Key Information

GHSA ID
GHSA-c2fx-6qc9-26x9
Published
November 21, 2023 3:30 PM
Last Modified
November 28, 2023 9:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 12, 2025 6:24 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.