CVE-2024-5693
Offscreen Canvas did not properly track cross-origin tainting, which could be used to access image data from another sit
Offscreen Canvas did not properly track cross-origin tainting, which could be used to access image data from another site in violation of same-origin policy. This vulnerability affects Firefox < 127, Firefox ESR < 115.12, and Thunderbird < 115.12.
MEDIUM · CVSS 6.1
EPSS 0.01765
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules1
YARA rules0