CVE-2023-37210: Medium severity Mozilla Firefox vulnerability
A website could prevent a user from exiting full-screen mode via alert and prompt calls. This could lead to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 115.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
ubuntu/firefoxto a version that resolves this vulnerability.Fixed in 115.0-1 - Upgrade
Upgrade
ubuntu/firefoxto a version that resolves this vulnerability.Fixed in 115.0+ - Upgrade
Upgrade
debian/firefoxto a version that resolves this vulnerability.Fixed in 123.0-1 - Upgrade
Upgrade
Firefoxto a version that resolves this vulnerability.Fixed in 115
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-37210?
The severity of CVE-2023-37210 is low.
How does CVE-2023-37210 affect Firefox?
CVE-2023-37210 affects Firefox versions earlier than 115.
What is the impact of CVE-2023-37210?
CVE-2023-37210 could lead to user confusion and possible spoofing attacks.
How can I fix CVE-2023-37210?
To fix CVE-2023-37210, update your Firefox to version 115 or higher.
Where can I find more information about CVE-2023-37210?
You can find more information about CVE-2023-37210 in the references provided: [Bugzilla](https://bugzilla.mozilla.org/show_bug.cgi?id=1821886) and [Mozilla Security Advisories](https://www.mozilla.org/security/advisories/mfsa2023-22/).