cve/2022/CVE-2022-45403.md
2024-05-25 21:48:12 +02:00

1.1 KiB

CVE-2022-45403

Description

Service Workers should not be able to infer information about opaque cross-origin responses; but timing information for cross-origin media combined with Range requests might have allowed them to determine the presence or length of a media file. This vulnerability affects Firefox ESR < 102.5, Thunderbird < 102.5, and Firefox < 107.

POC

Reference

No PoCs from references.

Github