Loading HuntDB...

GHSA-f7vm-6g4j-64q8

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

An attacker who could have convinced a user to drag and drop an image to a filesystem could have manipulated the resulting filename to contain an executable extension, and by extension potentially tricked the user into executing malicious code. While very similar, this is a separate issue from CVE-2022-34482. This vulnerability affects Firefox < 102.

Related CVEs

Key Information

GHSA ID
GHSA-f7vm-6g4j-64q8
Published
December 22, 2022 9:30 PM
Last Modified
April 15, 2025 6:31 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 14, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.