CVE-2023-4047: CSRF
A bug in popup notifications delay calculation could have made it possible for an attacker to trick a user into granting permissions.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the vulnerability ID for this bug in popup notifications delay calculation?
The vulnerability ID for this bug in popup notifications delay calculation is CVE-2023-4047.
Which software is affected by this vulnerability?
This vulnerability affects Firefox versions < 116, Firefox ESR versions < 102.14, and Thunderbird versions < 115.1.
What is the severity rating of CVE-2023-4047?
The severity rating of CVE-2023-4047 is high (8.8).
How can I fix the vulnerability in Firefox and Thunderbird?
To fix the vulnerability in Firefox, update to version 116 or later. To fix the vulnerability in Thunderbird, update to version 115.1 or later.
Where can I find more information about CVE-2023-4047?
You can find more information about CVE-2023-4047 on the Mozilla Security Advisories page: [Link](https://www.mozilla.org/security/advisories/mfsa2023-30/)