AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-43531

MEDIUM · CVSS 4.3 EPSS 0.33%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-12-08 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 4.3. It affects Firefox.

CVE
CVE-2021-43531
Severity
MEDIUM
CVSS
4.3
EPSS
0.33%
Firefox

Original NVD Description

When a user loaded a Web Extensions context menu, the Web Extension could access the post-redirect URL of the element clicked. If the Web Extension lacked the WebRequest permission for the hosts involved in the redirect, this would be a same-origin-violation leaking data the Web Extension should have access to. This was fixed to provide the pre-redirect URL. This is related to CVE-2021-43532 but in the context of Web Extensions. This vulnerability affects Firefox < 94.

Related CVEs

Other vulnerabilities affecting the same vendor(s)