First published: Tue Oct 24 2023(Updated: )
A website could have obscured the full screen notification by using the file open dialog. This could have led to user confusion and possible spoofing attacks. *Note: This issue only affected macOS operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox ESR | <115.4 | 115.4 |
Mozilla Thunderbird | <115.4.1 | 115.4.1 |
Mozilla Firefox | <119 | 119 |
Mozilla Firefox | <119.0 | |
Mozilla Firefox ESR | <115.4 | |
Mozilla Thunderbird | <115.4.1 | |
Apple macOS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2023-5726.
The title of the vulnerability is 'A website could have obscured the full screen notification by using the file open dialog.'
This vulnerability only affects macOS operating systems. Other operating systems are unaffected.
The severity of CVE-2023-5726 is medium with a severity value of 4.
To fix CVE-2023-5726, you should update your Mozilla Firefox or Mozilla Firefox ESR to versions 119 or 115.4 respectively.