8.8
CVSSv3

CVE-2022-28284

Published: 22/12/2022 Updated: 30/12/2022
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

It exists that selecting text caused Firefox to crash in some circumstances. An attacker could potentially exploit this to cause a denial of service. (CVE-2022-28287)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox

Vendor Advisories

Firefox could be made to crash or run programs as your login if it opened a malicious website ...
Mozilla Foundation Security Advisory 2022-13 Security Vulnerabilities fixed in Firefox 99 Announced April 5, 2022 Impact high Products Firefox Fixed in Firefox 99 ...
SVG's <use> element could have been used to load unexpected content that could have executed script in certain circumstances While the specification seems to allow this, other browsers do not, and web developers relied on this property for script security so gecko's implementation was aligned with theirs ...