CVE-2019-9797

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/04/2019
Last modified:
10/06/2019

Description

Cross-origin images can be read in violation of the same-origin policy by exporting an image after using createImageBitmap to read the image and then rendering the resulting bitmap image within a canvas element. This vulnerability affects Firefox

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* 66.0 (excluding)