CVE-2014-8632
11.12.2014, 11:59
The structured-clone implementation in Mozilla Firefox before 34.0 and SeaMonkey before 2.31 does not properly interact with XrayWrapper property filtering, which allows remote attackers to bypass intended DOM object restrictions by leveraging property availability after XrayWrapper removal.Enginsight
| Vendor | Product | Version |
|---|---|---|
| mozilla | firefox | 𝑥 ≤ 33.0 |
| mozilla | seamonkey | 𝑥 ≤ 2.30 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References