๐Ÿ” CVE Alert

CVE-2023-25741

MEDIUM 6.5
CVSS Score
6.5
EPSS Score
0.0%
EPSS Percentile
0th

When dragging and dropping an image cross-origin, the image's size could potentially be leaked. This behavior was shipped in 109 and caused web compatibility problems as well as this security concern, so the behavior was disabled until further review. This vulnerability affects Firefox < 110.

Vendor mozilla
Product firefox
Ecosystems
Industries
Technology
Published Jun 2, 2023
Last Updated Jan 9, 2025
Stay Ahead of the Next One

Get instant alerts for mozilla firefox

Be the first to know when new medium vulnerabilities affecting mozilla firefox are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Mozilla / Firefox
unspecified < 110

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
mozilla.org: https://www.mozilla.org/security/advisories/mfsa2023-05/ bugzilla.mozilla.org: https://bugzilla.mozilla.org/show_bug.cgi?id=1813376 bugzilla.mozilla.org: https://bugzilla.mozilla.org/show_bug.cgi?id=1437126 bugzilla.mozilla.org: https://bugzilla.mozilla.org/show_bug.cgi?id=1812611