3.3
CVSSv3

CVE-2022-42931

Published: 22/12/2022 Updated: 08/08/2023
CVSS v3 Base Score: 3.3 | Impact Score: 1.4 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

Logins saved by Firefox should be managed by the Password Manager component which uses encryption to save files on-disk. Instead, the username (not password) was saved by the Form Manager to an unencrypted file on disk. This vulnerability affects Firefox < 106.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox

Vendor Advisories

Firefox could be made to crash or run programs as your login if it opened a malicious website ...
USN-5709-1 introduced minor regressions in Firefox ...
Mozilla Foundation Security Advisory 2022-44 Security Vulnerabilities fixed in Firefox 106 Announced October 18, 2022 Impact high Products Firefox Fixed in Firefox 106 ...