Cross-origin images can be read in violation of the same-origin policy by exporting an image after using createImageBitmap to read the image and then rendering the resulting bitmap image within a canvas element. This vulnerability affects Firefox < 66.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mozilla
Published: 2019-04-26T16:13:22
Updated: 2019-06-28T14:06:06
Reserved: 2019-03-14T00:00:00
Link: CVE-2019-9797
JSON object: View
NVD Information
Status : Modified
Published: 2019-04-26T17:29:02.680
Modified: 2019-06-10T15:29:03.260
Link: CVE-2019-9797
JSON object: View
Redhat Information
No data.
CWE