First published: Tue Nov 15 2022(Updated: )
Service Workers did not detect Private Browsing Mode correctly in all cases, which could have led to Service Workers being written to disk for websites visited in Private Browsing Mode. This would not have persisted them in a state where they would run again, but it would have leaked Private Browsing Mode details to disk.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <107 | 107 |
<107 | 107 | |
Mozilla Firefox | <107.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this vulnerability is CVE-2022-45417.
The severity level of CVE-2022-45417 is medium.
CVE-2022-45417 affects Mozilla Firefox versions up to and excluding 107.0.
To fix CVE-2022-45417, update Mozilla Firefox to version 107.0 or later.
You can find more information about CVE-2022-45417 in the following references: [Bugzilla](https://bugzilla.mozilla.org/show_bug.cgi?id=1794508), [Mozilla Security Advisories](https://www.mozilla.org/en-US/security/advisories/mfsa2022-47/)