CVE-2023-37203
Discription
Insufficient validation in the Drag and Drop API in conjunction with social
engineering, may have allowed an attacker to trick end-users into creating
a shortcut to local system files. This could have been leveraged to
execute arbitrary code. This vulnerability affects Firefox ) | mozjs contains a copy of the SpiderMonkey JavaScript engine
[mdeslaur]() | starting with Ubuntu 22.04, the firefox package is just a script that installs the Firefox snapRead More
References
Back to Main