CVE-2017-7808 log

Severity Medium
Remote Yes
Type Information disclosure
A CSP information leak has been found in Firefox < 55.0. A content security policy (CSP) frame-ancestors directive containing origins with paths allows for comparisons against those paths instead of the origin. This results in a cross-origin information leak of this path information.
Group Package Affected Fixed Severity Status Ticket
AVG-375 firefox 54.0.1-1 55.0-1 Critical Fixed
Date Advisory Group Package Severity Type
10 Aug 2017 ASA-201708-3 AVG-375 firefox Critical multiple issues