Related Vulnerabilities: CVE-2022-29914  

A flaw was found in Mozilla. The Mozilla Foundation Security Advisory describes the issue of when reusing existing popups; Firefox allowed them to cover the fullscreen notification UI, which possibly enabled browser spoofing attacks.

Description

A flaw was found in Mozilla. The Mozilla Foundation Security Advisory describes the issue of when reusing existing popups; Firefox allowed them to cover the fullscreen notification UI, which possibly enabled browser spoofing attacks.

Additional Information

  • Bugzilla 2081468: CVE-2022-29914 Mozilla: Fullscreen notification bypass using popups
  • CWE-1021: Improper Restriction of Rendered UI Layers or Frames
  • FAQ: Frequently asked questions about CVE-2022-29914