First published: Tue Jan 17 2023(Updated: )
Per origin notification permissions were being stored in a way that didn't take into account what browsing context the permission was granted in. This lead to the possibility of notifications to be displayed during different browsing sessions.<br>*This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 109.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <109 | 109 |
<109 | 109 | |
Mozilla Firefox | <109.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this issue is CVE-2023-23600.
The severity of CVE-2023-23600 is medium, with a severity value of 6.5.
CVE-2023-23600 affects Mozilla Firefox for Android.
To fix CVE-2023-23600, update your Mozilla Firefox for Android to version 109.0 or later.
More information about CVE-2023-23600 can be found in the Mozilla Security Advisory MFS2023-01 and the Bugzilla entry.