/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2024-9398

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2024-9398

Severity

5.3

Medium

CVSS V3

Description

By checking the result of calls to window.open with specifically set protocol handlers, an attacker could determine if the application which implements that protocol handler is installed. This vulnerability affects Firefox < 131, Firefox ESR < 128.3, Thunderbird < 128.3, and Thunderbird < 131.

References

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing