Loading...
Loading...
Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 allows remote attackers to bypass the same origin policy by causing the browser to issue an XMLHttpRequest to an attacker-controlled resource that uses a 302 redirect to a resource in a different domain, then reading content from the response, aka "response disclosure."
December 17, 2008
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2008-5506
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.