Privilege Escalation Vulnerability in Firefox WebExtensions

Privilege Escalation Vulnerability in Firefox WebExtensions

CVE-2018-12396 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

A vulnerability where a WebExtension can run content scripts in disallowed contexts following navigation or other events. This allows for potential privilege escalation by the WebExtension on sites where content scripts should not be run. This vulnerability affects Firefox ESR < 60.3 and Firefox < 63.

Learn more about our Web App Pen Testing.