CVE-2023-32210

MEDIUM

Firefox < 113 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Documents were incorrectly assuming an ordering of principal objects when ensuring we were loading an appropriately privileged principal. In certain circumstances it might have been possible to cause a document to be loaded with a higher privileged principal than intended. This vulnerability affects Firefox < 113.

References (3)

Core 3

Scores

CVSS v3 6.5
EPSS 0.0018
EPSS Percentile 39.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

Details

Status published
Products (1)
mozilla/firefox < 113.0
Published Jun 19, 2023
Tracked Since Feb 18, 2026