CVE-2023-5726 - How a File Picker Dialog Could Hide Fullscreen Warnings on macOS Firefox
In October 2023, a new security vulnerability was discovered in Firefox, Thunderbird, and Firefox ESR on macOS systems. Identified as CVE-2023-5726, this bug made it
CVE-2023-5724 - Exploiting Large Draw Call Vulnerabilities in Firefox and Thunderbird
On October 24, 2023, a notable vulnerability was disclosed in Mozilla Firefox, Firefox ESR, and Thunderbird, tracked as CVE-2023-5724. In simple terms, this bug allows
CVE-2023-4055 - Behind the Scenes of a Cookie Jar Mixup in Firefox
Published: Exclusive Long-Read
CVSS Score: 4.3 (Medium)
Impacted software:
Firefox ESR < 115.1
Web developers and end-users depend on cookies every day—for
CVE-2023-4045 - How OffscreenCanvas Bypassed Same-Origin Policy in Firefox (Full Details and Exploit Guide)
TL;DR:
A security bug in Firefox (before version 116, ESR < 102.14 & < 115.1) let attackers use *OffscreenCanvas* to read pixels
CVE-2023-4049 - Race Condition in Reference Counting Hits Firefox — Exploit, Details, and What You Should Know
In August 2023, Mozilla patched an important vulnerability tracked as CVE-2023-4049. Found by code inspection, the security flaw is a race condition in how Firefox
Episode
00:00:00
00:00:00