CVE-2019-11701

The default webcal: protocol handler will load a web site vulnerable to cross-site scripting (XSS) attacks. This default was left in place as a legacy feature and has now been removed. *Note: this issue only affects users with an account on the vulnerable service. Other users are unaffected.*. This vulnerability affects Firefox < 67.
References
Configurations

Configuration 1

cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*

Information

Published : 2019-07-23 02:15

Updated : 2019-07-26 06:38


NVD link : CVE-2019-11701

Mitre link : CVE-2019-11701

Products Affected
No products.
CWE