Vulnerabilities > Mozilla > Firefox ESR > 91.3.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-12-08 | CVE-2021-43541 | When invoking protocol handlers for external protocols, a supplied parameter URL containing spaces was not properly escaped. | 6.5 |
2021-12-08 | CVE-2021-43542 | Information Exposure Through an Error Message vulnerability in multiple products Using XMLHttpRequest, an attacker could have identified installed applications by probing error messages for loading external protocols. | 6.5 |
2021-12-08 | CVE-2021-43543 | Cross-site Scripting vulnerability in multiple products Documents loaded with the CSP sandbox directive could have escaped the sandbox's script restriction by embedding additional content. | 6.1 |
2021-12-08 | CVE-2021-43545 | Excessive Iteration vulnerability in multiple products Using the Location API in a loop could have caused severe application hangs and crashes. | 6.5 |
2021-12-08 | CVE-2021-43546 | Improper Restriction of Rendered UI Layers or Frames vulnerability in multiple products It was possible to recreate previous cursor spoofing attacks against users with a zoomed native cursor. | 4.3 |