Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-11700


Malicious websites may have been able to perform user intent confirmation through tapjacking. This could have led to users unknowingly approving the launch of external applications, potentially exposing them to underlying vulnerabilities. This vulnerability affects Firefox < 133 and Thunderbird < 133.


Published

2024-11-26T14:15:19.523

Last Modified

2025-04-03T13:32:01.157

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 8.1 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-1021

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application mozilla firefox < 133.0 Yes
Application mozilla thunderbird < 133.0 Yes

References