Improper Restriction of Rendered UI Layers or Frames in Mozilla Firefox and Firefox for Android - CVE-2024-5698
Published: June 11, 2024
Mozilla Firefox
Firefox for Android
Mozilla
Description
The vulnerability allows a remote attacker to perform spoofing attack.
The vulnerability exists due to an error when processing data-list. By manipulating the fullscreen feature while opening a data-list, an attacker could have overlaid a text box over the address bar. This could have led to user confusion and possible spoofing attacks.