CVE-2022-45413: Medium severity firefox vulnerability
Using the <code>S.browserfallbackurl parameter</code> parameter, an attacker could redirect a user to a URL and cause SameSite=Strict cookies to be sent.<br>This issue only affects Firefox for Android. Other operating systems are not affected.. This vulnerability affects Firefox < 107.
Other sources
Using the S.browserfallbackurl parameter parameter, an attacker could redirect a user to a URL and cause SameSite=Strict cookies to be sent.This issue only affects Firefox for Android. Other operating systems are not affected.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2022-45413?
CVE-2022-45413 is a vulnerability that allows an attacker to redirect a user and potentially expose SameSite=Strict cookies in Firefox for Android version 107.
Which software is affected by CVE-2022-45413?
Firefox version up to 107 is affected by CVE-2022-45413, specifically on Firefox for Android.
How does CVE-2022-45413 affect users?
CVE-2022-45413 can be exploited by an attacker to redirect a user to a malicious URL, potentially exposing SameSite=Strict cookies.
What is the severity of CVE-2022-45413?
CVE-2022-45413 has a severity rating of 6.1 (medium).
How can I fix CVE-2022-45413?
To mitigate CVE-2022-45413, users can update to the latest version of Firefox for Android, which has the fix applied.