CVE-2019-11725 - log back

CVE-2019-11725 created at 25 Sep 2019 19:31:40
Severity
+ Low
Remote
+ Remote
Type
+ Access restriction bypass
Description
+ In Firefox before 68.0, when a user navigates to a site marked as unsafe by the Safebrowsing API, warning messages are displayed and navigation is interrupted but resources from the same site loaded through websockets are not blocked, leading to the loading of unsafe resources and bypassing safebrowsing protections.
References
+ https://www.mozilla.org/en-US/security/advisories/mfsa2019-21/#CVE-2019-11725
+ https://bugzilla.mozilla.org/show_bug.cgi?id=1483510
Notes