Related Vulnerabilities: CVE-2021-38508  

By displaying a form validity message in the correct location at the same time as a permission prompt (such as for geolocation), the validity message could have obscured the prompt, resulting in the user potentially being tricked into granting the permission.

Severity Medium

Remote Yes

Type Content spoofing

Description

By displaying a form validity message in the correct location at the same time as a permission prompt (such as for geolocation), the validity message could have obscured the prompt, resulting in the user potentially being tricked into granting the permission.

AVG-2511 firefox 93.0-1 94.0-1 High Testing

https://www.mozilla.org/security/advisories/mfsa2021-48/
https://bugzilla.mozilla.org/show_bug.cgi?id=1366818