AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-5115

HIGH · CVSS 7.5 EPSS 2.58%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-06-11 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. It affects Firefox.

CVE
CVE-2018-5115
Severity
HIGH
CVSS
7.5
EPSS
2.58%
Firefox

Original NVD Description

If an HTTP authentication prompt is triggered by a background network request from a page or extension, it is displayed over the currently loaded foreground page. Although the prompt contains the real domain making the request, this can result in user confusion about the originating site of the authentication request and may cause users to mistakenly send private credential information to a third party site. This vulnerability affects Firefox < 58.

Related CVEs

Other vulnerabilities affecting the same vendor(s)