CVE-2020-26967: Medium severity firefox vulnerability
When listening for page changes with a Mutation Observer, a malicious web page could confuse Firefox Screenshots into interacting with elements other than those that it injected into the page. This would lead to internal errors and unexpected behavior in the Screenshots code.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2020-26967?
CVE-2020-26967 is a vulnerability in Firefox that allows a malicious web page to confuse Firefox Screenshots into interacting with injected elements, leading to internal errors and unexpected behavior.
Which software is affected by CVE-2020-26967?
Mozilla Firefox versions up to exclusive version 83.0 are affected by CVE-2020-26967.
How severe is CVE-2020-26967?
CVE-2020-26967 has a severity rating of 6.5 (Medium).
How can I fix CVE-2020-26967?
To fix CVE-2020-26967, update your Mozilla Firefox browser to version 83.0 or higher.
Where can I find more information about CVE-2020-26967?
You can find more information about CVE-2020-26967 on the Mozilla website and bugzilla.mozilla.org.