CVE-2024-9397

6.1MEDIUM

A missing delay in directory upload UI could have made it possible for an attacker to trick a user into granting permission via clickjacking. This vulnerability affects Firefox < 131, Firefox ESR < 12

Publicado: 10/1/2024Atualizado: 3/18/2025

Descrição

A missing delay in directory upload UI could have made it possible for an attacker to trick a user into granting permission via clickjacking. This vulnerability affects Firefox < 131, Firefox ESR < 128.3, Thunderbird < 128.3, and Thunderbird < 131.

Análise IADesenvolvido por IA

Produtos Afetados

mozillafirefox
mozillafirefox_esr
mozillathunderbird
mozillathunderbird
129.0
mozillathunderbird
129.0
mozillathunderbird
129.0
mozillathunderbird
129.0
mozillathunderbird
129.0
mozillathunderbird
129.0

Referências