← Back

CVE-2022-28286

nvd nist
Published: Dec 22, 2022Modified: Apr 16, 2025

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.5
Source: NVD

Description

Due to a layout change, iframe contents could have been rendered outside of its border. This could have led to user confusion or spoofing attacks. This vulnerability affects Thunderbird < 91.8, Firefox < 99, and Firefox ESR < 91.8.

Affected (3)

3 products
Firefox
Firefox Esr
Thunderbird
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Before 99.0
Before 91.8
Before 91.8

References (8)

Source: security@mozilla.org
ExploitIssue TrackingVendor Advisory
Source: security@mozilla.org
ExploitVendor Advisory
Source: security@mozilla.org
ExploitVendor Advisory
Source: security@mozilla.org
ExploitVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitIssue TrackingVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitVendor Advisory

Timeline

No history available yet.