CVE-2022-29909 - log back

CVE-2022-29909 edited at 16 May 2022 19:59:55
Type
- Unknown
+ Privilege escalation
References
https://bugzilla.mozilla.org/show_bug.cgi?id=1755081
+ https://www.mozilla.org/en-US/security/advisories/mfsa2022-16/#CVE-2022-29909
+ https://www.mozilla.org/en-US/security/advisories/mfsa2022-18/#CVE-2022-29909
CVE-2022-29909 edited at 14 May 2022 19:38:51
Severity
- Unknown
+ High
Remote
- Unknown
+ Remote
Description
+ Documents in deeply-nested cross-origin browsing contexts could have obtained permissions granted to the top-level origin, bypassing the existing prompt and wrongfully inheriting the top-level permissions.
References
+ https://bugzilla.mozilla.org/show_bug.cgi?id=1755081
Notes
CVE-2022-29909 created at 14 May 2022 19:37:10