Related Vulnerabilities: CVE-2021-38504  

When interacting with an HTML input element's file picker dialog with "webkitdirectory" set, a use-after-free could have resulted, leading to memory corruption and a potentially exploitable crash.

Severity High

Remote Yes

Type Arbitrary code execution

Description

When interacting with an HTML input element's file picker dialog with "webkitdirectory" set, a use-after-free could have resulted, leading to memory corruption and a potentially exploitable crash.

AVG-2511 firefox 93.0-1 94.0-1 High Testing

https://www.mozilla.org/security/advisories/mfsa2021-48/
https://bugzilla.mozilla.org/show_bug.cgi?id=1730156