Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2018-5113
Description:The "browser.identity.launchWebAuthFlow" function of WebExtensions is only allowed to load content over "https:" but this requirement was not properly enforced. This can potentially allow privileged pages to be loaded by the extension. This vulnerability affects Firefox < 58.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2018-5113
BugTraq ID: 102786
http://www.securityfocus.com/bid/102786
http://www.securitytracker.com/id/1040270
https://usn.ubuntu.com/3544-1/




© 1998-2025 E-Soft Inc. All rights reserved.