AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2019-11737

MEDIUM · CVSS 5.3 EPSS 0.55%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-09-27 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2019-11737
Severity
MEDIUM
CVSS
5.3
EPSS
0.55%
Firefox

Original NVD Description

If a wildcard ('*') is specified for the host in Content Security Policy (CSP) directives, any port or path restriction of the directive will be ignored, leading to CSP directives not being properly applied to content. This vulnerability affects Firefox < 69.