Related Vulnerabilities: CVE-2021-38509  

Due to an unusual sequence of attacker-controlled events, a Javascript alert() dialog with arbitrary (although unstyled) contents could be displayed over top an uncontrolled webpage of the attacker's choosing.

Severity Medium

Remote Yes

Type Content spoofing

Description

Due to an unusual sequence of attacker-controlled events, a Javascript alert() dialog with arbitrary (although unstyled) contents could be displayed over top an uncontrolled webpage of the attacker's choosing.

AVG-2511 firefox 93.0-1 94.0-1 High Testing

https://www.mozilla.org/security/advisories/mfsa2021-48/
https://bugzilla.mozilla.org/show_bug.cgi?id=1718571