CVE-2023-28161
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2023-28161 is a vulnerability affecting Firefox versions below 111. It allows temporary permissions, such as access to the camera, granted to a document loaded from a file URL to persist indefinitely for all subsequent documents loaded from the same source. This poses a security risk if files come from different sources, such as a download directory. An attacker could potentially exploit this vulnerability to gain unauthorized access to sensitive information or features. Users are urged to update their Firefox browser to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.