First published: Tue Jan 26 2021(Updated: )
The browser could have been confused into transferring a pointer lock state into another tab, which could have lead to clickjacking attacks.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <85 | 85 |
<85 | 85 | |
Mozilla Firefox | <85.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this browser vulnerability is CVE-2021-23955.
The title of this vulnerability is 'The browser could have been confused into transferring a pointer lock state into another tab which could have lead to clickjacking attacks.'
The description of this vulnerability is 'The browser could have been confused into transferring a pointer lock state into another tab, which could have lead to clickjacking attacks.'
The software affected by this vulnerability is Mozilla Firefox up to version 85.
The severity level of this vulnerability is high with a severity value of 7.
To fix this vulnerability, update Mozilla Firefox to a version higher than 85.
You can find more information about this vulnerability at the following references: [Bugzilla](https://bugzilla.mozilla.org/show_bug.cgi?id=1684837) and [Mozilla Security Advisories](https://www.mozilla.org/en-US/security/advisories/mfsa2021-03/).