10
CVSSv3

CVE-2019-25136

Published: 19/06/2023 Updated: 27/06/2023
CVSS v3 Base Score: 10 | Impact Score: 6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A compromised child process could have injected XBL Bindings into privileged CSS rules, resulting in arbitrary code execution and a sandbox escape. This vulnerability affects Firefox < 70.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox

Vendor Advisories

DescriptionThe MITRE CVE dictionary describes this issue as: A compromised child process could have injected XBL Bindings into privileged CSS rules, resulting in arbitrary code execution and a sandbox escape This vulnerability affects Firefox &amp;lt; 70 ...