CVE-2022-46877: Debian Linux

Medium severity, CVSS 4.3. EPSS: 0.7% chance of exploitation in the next 30 days.

By confusing the browser, the fullscreen notification could have been delayed or suppressed, resulting in potential user confusion or spoofing attacks. This vulnerability affects Firefox < 108.

Affected products

  • Debian Debian Linux: version 10.0 only; version 11.0 only
  • Mozilla Firefox: before 108.0 (fixed in 108.0)

Published 2022-12-22. Last modified 2026-06-17.