Improper Verification of Source of a Communication Channel Affecting Firefox package, versions [0,]
Threat Intelligence
Exploit Maturity
Proof of concept
Do your applications use this vulnerable package?
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applications- Snyk ID SNYK-UNMANAGED-FIREFOX-7707875
- published 19 Aug 2024
- disclosed 18 Aug 2024
- credit William Entriken
How to fix?
There is no fixed version for Firefox
.
Overview
Affected versions of this package are vulnerable to Improper Verification of Source of a Communication Channel when the website contains http://location.search||fetch(0).then(a=>location='?x');
. This vulnerability prevents visitors from navigating back away from the website.
NOTE: This vulnerability impacts macOS environments.