WebExtensions Vulnerability: Bypassing Content Restrictions in Firefox < 59

WebExtensions Vulnerability: Bypassing Content Restrictions in Firefox < 59

CVE-2018-5134 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

WebExtensions may use "view-source:" URLs to view local "file:" URL content, as well as content stored in "about:cache", bypassing restrictions that only allow WebExtensions to view specific content. This vulnerability affects Firefox < 59.

Learn more about our Web Application Penetration Testing UK.