First published: Thu Sep 28 2017(Updated: )
Last updated 24 July 2024
Credit: security@mozilla.org security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <56 | 56 |
Mozilla Firefox | <=55.0.3 | |
debian/firefox | 131.0.2-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2017-7820.
This vulnerability affects Mozilla Firefox versions up to and including 56.0.3.
The severity of CVE-2017-7820 is medium, with a CVSS score of 5.3.
This vulnerability can be exploited by using the instanceof operator on web content from the browser itself or an extension, tricking the browser or extension into mishandling the element.
Yes, the vulnerability can be fixed by updating Mozilla Firefox to version 56.0.3 or newer.