Loading HuntDB...

GHSA-wq6m-ccxj-7ccv

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

If the ALT and "a" keys are pressed when users receive an extension installation prompt, the extension will be installed without the install prompt delay that keeps the prompt visible in order for users to accept or decline the installation. A malicious web page could use this with spoofing on the page to trick users into installing a malicious extension. This vulnerability affects Firefox < 67.

Related CVEs

Key Information

GHSA ID
GHSA-wq6m-ccxj-7ccv
Published
May 24, 2022 4:50 PM
Last Modified
April 4, 2024 1:20 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: November 25, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.