Loading...
Loading...
The XrayWrapper implementation in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 does not consider the compartment during property filtering, which allows remote attackers to bypass intended chrome-only restrictions on reading DOM object properties via a crafted web site.
November 21, 2012
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2012-4208
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.