Because Firefox did not implement... CVE-2022-46873

- AV AC AU C I A
发布: 2022-12-22
修订: 2024-11-21

Because Firefox did not implement the <code>unsafe-hashes</code> CSP directive, an attacker who was able to inject markup into a page otherwise protected by a Content Security Policy may have been able to inject executable script. This would be severely constrained by the specified Content Security Policy of the document. This vulnerability affects Firefox < 108.

0%
当前有4条漏洞利用/PoC
当前有1条受影响产品信息