CVE Vulnerabilities

CVE-2023-25741

Published: Jun 02, 2023 | Modified: Jun 08, 2023
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

When dragging and dropping an image cross-origin, the images size could potentially be leaked. This behavior was shipped in 109 and caused web compatibility problems as well as this security concern, so the behavior was disabled until further review. This vulnerability affects Firefox < 110.

Affected Software

Name Vendor Start Version End Version
Firefox Mozilla * 110.0 (excluding)

References