CVE-2022-42931: Low severity firefox vulnerability
Logins saved by Firefox should be managed by the Password Manager component which uses encryption to save files on-disk. Instead, the username (not password) was saved by the Form Manager to an unencrypted file on disk.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2022-42931?
CVE-2022-42931 is a vulnerability in Firefox where the Form Manager saved usernames to an unencrypted file on disk instead of using the Password Manager component for encryption.
How does CVE-2022-42931 affect Firefox?
CVE-2022-42931 affects Firefox versions prior to 106.0.
What is the severity of CVE-2022-42931?
The severity of CVE-2022-42931 is low, with a severity value of 3.3.
How can I fix CVE-2022-42931?
To fix CVE-2022-42931, update Firefox to version 106.0 or later.
Where can I find more information about CVE-2022-42931?
More information about CVE-2022-42931 can be found in the following references: [link1](https://bugzilla.mozilla.org/show_bug.cgi?id=1780571), [link2](https://www.mozilla.org/en-US/security/advisories/mfsa2022-44/), [link3](https://www.mozilla.org/security/advisories/mfsa2022-44/)