CVE-2023-37204
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Jul 5, 2023
Updated: Jan 7, 2024
Summary
CVE-2023-37204 is a vulnerability that affects Firefox versions below 115. Hackers could exploit this issue by using an option element to obscure fullscreen notifications through introduced lag caused by an expensive computational function. This could potentially lead to user confusion and create opportunities for spoofing attacks. The vulnerability lies in the notification system's handling of such elements, allowing attackers to manipulate user experience and potentially gain unauthorized access to sensitive information.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share