CVE-2019-11699: Mozilla Firefox
Medium severity, CVSS 6.5. EPSS: 0.8% chance of exploitation in the next 30 days.
A malicious page can briefly cause the wrong name to be highlighted as the domain name in the addressbar during page navigations. This could result in user confusion of which site is currently loaded for spoofing attacks. This vulnerability affects Firefox < 67.
Affected products
- Mozilla Firefox: before 67.0 (fixed in 67.0)
Published 2019-07-23. Last modified 2026-06-17.