Security Advisory

CVE-2019-9817

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-07-23 13:24:05
Last updated 2024-08-04 22:01:54
Assigner mozilla
CVSS score not scored
State PUBLISHED

Description

Images from a different domain can be read using a canvas object in some circumstances. This could be used to steal image data from a different site in violation of same-origin policy. This vulnerability affects Thunderbird < 60.7, Firefox < 67, and Firefox ESR < 60.7.