cve/2020/CVE-2020-15660.md
2024-05-25 21:48:12 +02:00

647 B

CVE-2020-15660

Description

Missing checks on Content-Type headers in geckodriver before 0.27.0 could lead to a CSRF vulnerability, that might, when paired with a specifically prepared request, lead to remote code execution.

POC

Reference

No PoCs from references.

Github