KLA10681
Information disclosure vulnerability in Mozilla Firefox
Updated: 10/23/2015
CVSS
?
6.8
Detect date
?
10/15/2015
Severity
?
High
Description

Improper CORS implementation was found in Mozilla Firefox at fetch() API. By exploiting this vulnerability malicious users can obtain sensitive information. This vulnerability can be exploited remotely via a specially designed web page.

Affected products

Mozilla Firefox versions earlier than 41.0.2

Solution

Update to the latest version
Get Firefox

Original advisories

Mozilla advisory

Impacts
?
OSI 
[?]
Related products
Mozilla Firefox
CVE-IDS
?

CVE-2015-7184