Loading HuntDB...

GHSA-p859-wprc-3cjx

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

If an attacker was able to corrupt the methods of an Array object in JavaScript via prototype pollution, they could have achieved execution of attacker-controlled JavaScript code in a privileged context. This vulnerability affects Firefox ESR < 91.9.1, Firefox < 100.0.2, Firefox for Android < 100.3.0, and Thunderbird < 91.9.1.

Related CVEs

Key Information

GHSA ID
GHSA-p859-wprc-3cjx
Published
December 22, 2022 9:30 PM
Last Modified
April 16, 2025 6:31 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 9, 2025 6:37 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.