CVE-2022-22757

Remote Agent, used in WebDriver, did not validate the Host or Origin headers. This could have allowed websites to connect back locally to the user's browser to control it.
*This bug only affected Firefox when WebDriver was enabled, which is not the default configuration.*. This vulnerability affects Firefox < 97.
References
Configurations

Configuration 1

cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*

Information

Published : 2022-12-22 08:15

Updated : 2022-12-29 10:49


NVD link : CVE-2022-22757

Mitre link : CVE-2022-22757

Products Affected
No products.
CWE