CVE-2020-12424: Medium severity firefox vulnerability
Last updated 24 July 2024
Other sources
When constructing a permission prompt for WebRTC, a URI was supplied from the content process. This URI was untrusted, and could have been the URI of an origin that was previously granted permission; bypassing the prompt.
— Mozilla
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2020-12424?
CVE-2020-12424 is a vulnerability in Firefox versions up to 78 that allows bypassing a permission prompt for WebRTC.
How does CVE-2020-12424 affect Firefox?
CVE-2020-12424 affects Firefox versions up to 78 by allowing the bypassing of permission prompts for WebRTC.
What is the severity of CVE-2020-12424?
The severity of CVE-2020-12424 is medium with a CVSS score of 6.5.
How can I fix CVE-2020-12424?
To fix CVE-2020-12424, update Firefox to version 78 or higher.
Where can I find more information about CVE-2020-12424?
You can find more information about CVE-2020-12424 in the Mozilla Security Advisory: MFSA2020-24.