CVE-2019-11737

If a wildcard ('*') is specified for the host in Content Security Policy (CSP) directives, any port or path restriction of the directive will be ignored, leading to CSP directives not being properly applied to content. This vulnerability affects Firefox < 69.
References
Configurations

Configuration 1

cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*

Information

Published : 2019-09-27 06:15

Updated : 2019-10-02 01:40


NVD link : CVE-2019-11737

Mitre link : CVE-2019-11737

Products Affected
No products.
CWE