cbcvebase.
CVE-2016-9901
published 2018-06-11

CVE-2016-9901: HTML tags received from the Pocket server will be processed without sanitization and any JavaScript code executed will be run in the "about:pocket-saved"…

critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
HTML tags received from the Pocket server will be processed without sanitization and any JavaScript code executed will be run in the "about:pocket-saved" (unprivileged) page, giving it access to Pocket's messaging API through HTML injection. This vulnerability affects Firefox ESR < 45.6 and Firefox < 50.1.

Affected

22 ranges
VendorProductVersion rangeFixed in
debianfirefox< firefox 50.1.0-1 (sid)firefox 50.1.0-1 (sid)
debianfirefox-esr< firefox 50.1.0-1 (sid)firefox 50.1.0-1 (sid)
mozillafirefox< 45.6.045.6.0
mozillafirefox< 50.150.1
mozillafirefox>= 0 < 50.1.0+build2-0ubuntu0.14.04.150.1.0+build2-0ubuntu0.14.04.1
mozillafirefox>= 0 < 50.1.0+build2-0ubuntu0.16.04.150.1.0+build2-0ubuntu0.16.04.1
mozillafirefox>= unspecified < 50.150.1
mozillafirefox_esr>= unspecified < 45.645.6
redhatenterprise_linux_aus
redhatenterprise_linux_aus
redhatenterprise_linux_desktop
redhatenterprise_linux_desktop
redhatenterprise_linux_desktop
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_server
redhatenterprise_linux_server
redhatenterprise_linux_server
redhatenterprise_linux_workstation
redhatenterprise_linux_workstation
redhatenterprise_linux_workstation

CVSS provenance

nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv9.8CRITICAL