Loading...
Loading...
Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to bypass cross-site scripting (XSS) protection by changing the src attribute of an IMG element to a javascript: URI.
December 20, 2006
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2006-6503
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.