9.8
CVSSv3

CVE-2022-34476

Published: 22/12/2022 Updated: 04/01/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

It exists that a compromised server could trick Firefox into an addon downgrade in some circumstances. An attacker could potentially exploit this to trick the browser into downgrading an addon to a prior version. (CVE-2022-34471)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox

Vendor Advisories

Firefox could be made to crash or run programs as your login if it opened a malicious website ...
Mozilla Foundation Security Advisory 2022-24 Security Vulnerabilities fixed in Firefox 102 Announced June 28, 2022 Impact high Products Firefox Fixed in Firefox 102 ...