CVE-2017-5415 - log back

CVE-2017-5415 created at 25 Sep 2019 19:31:40
Severity
+ Medium
Remote
+ Remote
Type
+ Content spoofing
Description
+ An attack can use a blob URL and script to spoof an arbitrary address bar URL prefaced by blob: as the protocol, leading to user confusion and further spoofing attacks.
References
+ https://www.mozilla.org/en-US/security/advisories/mfsa2017-05/#CVE-2017-5415
+ https://bugzilla.mozilla.org/show_bug.cgi?id=1321719
Notes