CVE-2022-26382 log

Source
Severity Medium
Remote Yes
Type Information disclosure
Description
While the text displayed in Autofill tooltips cannot be directly read by JavaScript, the text was rendered using page fonts. Side-channel attacks on the text by using specially crafted fonts could have lead to this text being inferred by the webpage.
Group Package Affected Fixed Severity Status Ticket
AVG-2714 firefox 97.0.2-1 98.0-1 High Fixed
References
https://bugzilla.mozilla.org/show_bug.cgi?id=1741888