52 lines
1.8 KiB
JSON
Raw Normal View History

{
"id": "CVE-2023-5725",
"sourceIdentifier": "security@mozilla.org",
"published": "2023-10-25T18:17:44.160",
"lastModified": "2023-10-29T11:15:07.917",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
"lang": "en",
"value": "A malicious installed WebExtension could open arbitrary URLs, which under the right circumstance could be leveraged to collect sensitive user data. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1."
},
{
"lang": "es",
"value": "Una WebExtension maliciosa instalada podr\u00eda abrir URL arbitrarias, que en las circunstancias adecuadas podr\u00edan aprovecharse para recopilar datos confidenciales del usuario. Esta vulnerabilidad afecta a Firefox &lt; 119, Firefox ESR &lt; 115.4 y Thunderbird &lt; 115.4.1."
}
],
"metrics": {},
"references": [
{
"url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1845739",
"source": "security@mozilla.org"
},
{
"url": "https://lists.debian.org/debian-lts-announce/2023/10/msg00037.html",
"source": "security@mozilla.org"
},
{
"url": "https://lists.debian.org/debian-lts-announce/2023/10/msg00042.html",
"source": "security@mozilla.org"
},
{
"url": "https://www.debian.org/security/2023/dsa-5535",
"source": "security@mozilla.org"
},
{
"url": "https://www.debian.org/security/2023/dsa-5538",
"source": "security@mozilla.org"
},
{
"url": "https://www.mozilla.org/security/advisories/mfsa2023-45/",
"source": "security@mozilla.org"
},
{
"url": "https://www.mozilla.org/security/advisories/mfsa2023-46/",
"source": "security@mozilla.org"
},
{
"url": "https://www.mozilla.org/security/advisories/mfsa2023-47/",
"source": "security@mozilla.org"
}
]
}