Unsafe Dependency Resolution Affecting Firefox package, versions [,102.9)


Severity

Recommended
0.0
medium
0
10

CVSS assessment made by Snyk's Security Team. Learn more

Threat Intelligence

EPSS
0.08% (37th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-UNMANAGED-FIREFOX-3361730
  • published16 Mar 2023
  • disclosed14 Mar 2023
  • creditLuan Herrera

Introduced: 14 Mar 2023

CVE-2023-28164  (opens in a new tab)
CWE-829  (opens in a new tab)

Amendment

This issue was found to be a duplicate. The original vulnerability with details can be found [here](https://security.snyk.io/vuln/when URL being dragged from a removed cross-origin iframe into the same tab triggered navigation.).

CVSS Scores

version 3.1