CVE Vulnerabilities

CVE-2023-23600

Published: Jun 02, 2023 | Modified: Jun 08, 2023
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Per origin notification permissions were being stored in a way that didnt take into account what browsing context the permission was granted in. This lead to the possibility of notifications to be displayed during different browsing sessions.This bug only affects Firefox for Android. Other operating systems are unaffected.. This vulnerability affects Firefox < 109.

Affected Software

Name Vendor Start Version End Version
Firefox Mozilla * 109.0 (excluding)

References