CVE-2019-11718
This content is written to innerHTML on the Activity Stream page without sanitization, allowing for a potential access to other information available to the Activity Stream, such as browsing history, if the Snipper Service were compromised.
Does this matter?
Lower severity and a low EPSS score (1.23%). Track it; it rarely justifies an emergency change on its own.
Description
Activity Stream can display content from sent from the Snippet Service website. This content is written to innerHTML on the Activity Stream page without sanitization, allowing for a potential access to other information available to the Activity Stream, such as browsing history, if the Snipper Service were compromised. This vulnerability affects Firefox < 68.
- CVSS 3.1
- 5.3 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
- EPSS
- 1.23% probability · 67th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-74
- Affected
- mozilla/firefox · opensuse/leap
- Source
- security@mozilla.org
References
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00011.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00017.htmlMailing List, Third Party Advisory
- https://bugzilla.mozilla.org/show_bug.cgi?id=1408349Issue Tracking, Permissions Required, Vendor Advisory
- https://security.gentoo.org/glsa/201908-12Third Party Advisory
- https://www.mozilla.org/security/advisories/mfsa2019-21/Vendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00011.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00017.htmlMailing List, Third Party Advisory
- https://bugzilla.mozilla.org/show_bug.cgi?id=1408349Issue Tracking, Permissions Required, Vendor Advisory
- https://security.gentoo.org/glsa/201908-12Third Party Advisory
- https://www.mozilla.org/security/advisories/mfsa2019-21/Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.