Related Vulnerabilities: CVE-2016-9070  

A maliciously crafted page loaded to the sidebar through a bookmark can reference a privileged chrome window and engage in limited JavaScript operations violating cross-origin protections.

Severity Medium

Remote Yes

Type Same-origin policy bypass

Description

A maliciously crafted page loaded to the sidebar through a bookmark can reference a privileged chrome window and engage in limited JavaScript operations violating cross-origin protections.

AVG-72 firefox 49.0.2-1 50.0-1 Critical Fixed

16 Nov 2016 ASA-201611-16 AVG-72 firefox Critical multiple issues

https://www.mozilla.org/en-US/security/advisories/mfsa2016-89/#CVE-2016-9070