AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2008-3835

HIGH · CVSS 7.5 EPSS 2.14%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-09-24 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2008-3835
Severity
HIGH
CVSS
7.5
EPSS
2.14%
Firefox Java

Original Filing — NVD Description

The nsXMLDocument::OnChannelRedirect function in Mozilla Firefox before 2.0.0.17, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allows remote attackers to bypass the Same Origin Policy and execute arbitrary JavaScript code via unknown vectors.