CVE-2024-6611

Currently unrated 🤨

Key Information

Vendor
Mozilla
Status
Firefox
Thunderbird
Vendor
CVE Published:
9 July 2024

Summary

A nested iframe, triggering a cross-site navigation, could send SameSite=Strict or Lax cookies. This vulnerability affects Firefox < 128 and Thunderbird < 128.

Affected Version(s)

Firefox < 128

Thunderbird < 128

Refferences

Timeline

  • Vulnerability published

Collectors

NVD DatabaseMitre Database

Credit

Pedro Bernardo
.