First published: Tue Sep 03 2019(Updated: )
Last updated 24 July 2024
Credit: security@mozilla.org security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox ESR | <68.1 | 68.1 |
Mozilla Firefox | <69.0 | |
Mozilla Firefox ESR | <68.1.0 | |
Mozilla Firefox | <69 | 69 |
debian/firefox | 132.0.2-1 | |
debian/firefox-esr | 115.14.0esr-1~deb11u1 128.4.0esr-1~deb11u1 128.3.1esr-1~deb12u1 128.4.0esr-1~deb12u1 128.3.1esr-2 128.4.0esr-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2019-11747 is a vulnerability in Mozilla Firefox that affects the 'Forget about this site' feature in the History pane.
CVE-2019-11747 allows sites on the pre-load list to retain HTTP Strict Transport Security (HSTS) settings even after using the 'Forget about this site' feature, potentially compromising user privacy.
Mozilla Firefox ESR versions up to 68.1, and Mozilla Firefox versions up to 69 are affected by CVE-2019-11747.
CVE-2019-11747 has a low severity rating.
To fix CVE-2019-11747, users should update to Mozilla Firefox ESR 68.1 or newer, or Mozilla Firefox 69 or newer.