CVE-2023-28160: Medium severity firefox vulnerability
Last updated 24 July 2024
Other sources
When following a redirect to a publicly accessible web extension file, the URL may have been translated to the actual local path, leaking potentially sensitive information.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2023-28160?
CVE-2023-28160 is a vulnerability that occurs when following a redirect to a publicly accessible web extension file, resulting in the URL being translated to the local path and potentially leaking sensitive information.
Which software is affected by CVE-2023-28160?
The Firefox web browser versions before 111 are affected by CVE-2023-28160.
What is the severity of CVE-2023-28160?
CVE-2023-28160 has a severity level of medium with a value of 4.
How can I fix CVE-2023-28160?
To fix CVE-2023-28160, update your Firefox browser to version 111 or higher.
Where can I find more information about CVE-2023-28160?
You can find more information about CVE-2023-28160 in the Mozilla Bugzilla and Mozilla Security Advisories websites.