CVE-2011-2369

Mozilla Firefox - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in Mozilla Firefox 4.x through 4.0.1 allows remote attackers to inject arbitrary web script or HTML via an SVG element containing an HTML-encoded entity.

Scores

EPSS 0.0026
EPSS Percentile 48.7%

Classification

CWE
CWE-79
Status published

Affected Products (15)

mozilla/firefox
mozilla/firefox
mozilla/firefox
mozilla/firefox
mozilla/firefox
mozilla/firefox
mozilla/firefox
mozilla/firefox
mozilla/firefox
mozilla/firefox
mozilla/firefox
mozilla/firefox
mozilla/firefox
mozilla/firefox
n/a/n/a

Timeline

Published Jun 30, 2011
Tracked Since Feb 18, 2026