CVE-2023-37203
Discription

Insufficient validation in the Drag and Drop API in conjunction with social
engineering, may have allowed an attacker to trick end-users into creating
a shortcut to local system files. This could have been leveraged to
execute arbitrary code. This vulnerability affects Firefox ) | mozjs contains a copy of the SpiderMonkey JavaScript engine
[mdeslaur]() | starting with Ubuntu 22.04, the firefox package is just a script that installs the Firefox snapRead More

Back to Main

Subscribe for the latest news: