CVE-2022-31744 - log back

CVE-2022-31744 edited at 07 Jun 2022 22:30:38
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Remote
Type
- Unknown
+ Access restriction bypass
Description
+ An attacker could have injected CSS into stylesheets accessible via internal URIs, such as resource:, and in doing so bypass a page's Content Security Policy.
References
+ https://bugzilla.mozilla.org/show_bug.cgi?id=1757604
Notes
CVE-2022-31744 created at 07 Jun 2022 22:17:04