CVE-2015-7208: Fedoraproject Fedora

Medium severity, CVSS 5.0. EPSS: 2.4% chance of exploitation in the next 30 days.

Mozilla Firefox before 43.0 stores cookies containing vertical tab characters, which allows remote attackers to obtain sensitive information by reading HTTP Cookie headers.

Affected products

  • Fedoraproject Fedora: version 22 only; version 23 only
  • Mozilla Firefox: up to and including 42.0
  • Opensuse Leap: version 42.1 only
  • Opensuse Opensuse: version 13.1 only; version 13.2 only

Published 2015-12-16. Last modified 2026-06-17.