CVE-2020-26973
Certain input to the CSS Sanitizer confused it, resulting in incorrect components being removed. This could have been us
Certain input to the CSS Sanitizer confused it, resulting in incorrect components being removed. This could have been used as a sanitizer bypass. This vulnerability affects Firefox < 84, Thunderbird < 78.6, and Firefox ESR < 78.6.
HIGH · CVSS 8.8
EPSS 0.0019
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules1
YARA rules0