CVE-2024-9399
A website configured to initiate a specially crafted WebTransport session could crash the Firefox process leading to a d
A website configured to initiate a specially crafted WebTransport session could crash the Firefox process leading to a denial of service condition. This vulnerability affects Firefox < 131, Firefox ESR < 128.3, Thunderbird < 128.3, and Thunderbird < 131.
HIGH · CVSS 7.5
EPSS 0.0026
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules1
YARA rules0