CVE-2023-5758: XSS
Published Oct 24, 2023
·Updated
When opening a page in reader mode, the redirect URL could have caused attacker-controlled script to execute in a reflected Cross-Site Scripting (XSS) attack.
Affected Software
3 affected components
All of the following
Mozilla Firefox=119
Apple iOS
Mozilla Firefox Mobile Iphone Os<119.0
Event History
Oct 24, 2023
CVE Published
via Mozilla·12:00 AM
CVE Published
via MITRE·08:11 PM
Data Sourced
via MITRE·08:11 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2023-5758?
CVE-2023-5758 is a vulnerability that allows an attacker-controlled script to execute in a reflected Cross-Site Scripting (XSS) attack when opening a page in reader mode.
2
Which software is affected by CVE-2023-5758?
Mozilla Firefox version 119 and Apple iOS are affected by CVE-2023-5758.
3
How severe is CVE-2023-5758?
CVE-2023-5758 has a severity rating of high.
4
How can I fix CVE-2023-5758?
To fix CVE-2023-5758, it is recommended to update Mozilla Firefox to a version that includes the necessary security patches.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2023-5758?
The Common Weakness Enumeration (CWE) ID for CVE-2023-5758 is CWE-79.