CVE-2023-32210: Mozilla Firefox
Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.
Documents were incorrectly assuming an ordering of principal objects when ensuring we were loading an appropriately privileged principal. In certain circumstances it might have been possible to cause a document to be loaded with a higher privileged principal than intended. This vulnerability affects Firefox < 113.
Affected products
- Mozilla Firefox: before 113.0 (fixed in 113.0)
Published 2023-06-19. Last modified 2026-06-17.