cve/2023/CVE-2023-25743.md
2024-06-18 02:51:15 +02:00

20 lines
997 B
Markdown

### [CVE-2023-25743](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-25743)
![](https://img.shields.io/static/v1?label=Product&message=Firefox%20ESR&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Firefox&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3C%20102.8%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Version&message=%3C%20110%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Fullscreen%20notification%20not%20shown%20in%20Firefox%20Focus&color=brighgreen)
### Description
A lack of in app notification for entering fullscreen mode could have lead to a malicious website spoofing browser chrome.<br>*This bug only affects Firefox Focus. Other versions of Firefox are unaffected.*. This vulnerability affects Firefox < 110 and Firefox ESR < 102.8.
### POC
#### Reference
- https://bugzilla.mozilla.org/show_bug.cgi?id=1800203
#### Github
No PoCs found on GitHub currently.