Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2022-28284
Description:SVG's <use> element could have been used to load unexpected content that could have executed script in certain circumstances. While the specification seems to allow this, other browsers do not, and web developers relied on this property for script security so gecko's implementation was aligned with theirs. This vulnerability affects Firefox < 99.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2022-28284
https://bugzilla.mozilla.org/show_bug.cgi?id=1754522
https://bugzilla.mozilla.org/show_bug.cgi?id=1754522
https://www.mozilla.org/security/advisories/mfsa2022-13/
https://www.mozilla.org/security/advisories/mfsa2022-13/




© 1998-2025 E-Soft Inc. All rights reserved.