First published: Tue Jan 11 2022(Updated: )
Malicious websites could have tricked users into accepting launching a program to handle an external URL protocol.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox ESR | <91.5 | 91.5 |
<96 | 96 | |
<91.5 | 91.5 | |
<91.5 | 91.5 | |
Mozilla Firefox | <96.0 | |
Mozilla Firefox ESR | <91.5 | |
Mozilla Thunderbird | <91.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-22739 is a vulnerability where malicious websites could trick users into launching a program to handle an external URL protocol.
CVE-2022-22739 affects Mozilla Firefox ESR version up to 91.5, Mozilla Firefox version up to 96, and Mozilla Thunderbird version up to 91.5.
CVE-2022-22739 is classified as a low severity vulnerability.
To fix CVE-2022-22739, it is recommended to update to the latest version of Mozilla Firefox ESR, Mozilla Firefox, or Mozilla Thunderbird.
More information about CVE-2022-22739 can be found at the following references: [1] [2] [3].