WebExtensions may use "view-source:" URLs to view local "file:" URL content, as well as content stored in "about:cache", bypassing restrictions that only allow WebExtensions to view specific content. This vulnerability affects Firefox < 59.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mozilla

Published: 2018-06-11T21:00:00

Updated: 2018-06-12T09:57:01

Reserved: 2018-01-03T00:00:00


Link: CVE-2018-5134

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-06-11T21:29:14.297

Modified: 2018-08-08T18:35:20.450


Link: CVE-2018-5134

JSON object: View

cve-icon Redhat Information

No data.

CWE