Field Assessment
AI analysis pending.
CVE
CVE-2018-5140
Severity
MEDIUM
CVSS
5.3
EPSS
1.32%
Firefox
Original Filing — NVD Description
Image for moz-icons can be accessed through the "moz-icon:" protocol through script in web content even when otherwise prohibited. This could allow for information leakage of which applications are associated with specific MIME types by a malicious page. This vulnerability affects Firefox < 59.