Multiple CSP and Network Vulnerabilities Affect Firefox and Thunderbird Users
Article Content
Browse articles
Two vulnerabilities have been identified affecting Firefox and Thunderbird. CVE-2024-6612 allows CSP violations to generate links in the console, leading to DNS prefetching and potential information leakage, impacting Firefox and Thunderbird versions below 128. CVE-2024-4773 permits prior content to remain visible during network errors, which could be exploited to spoof websites, affecting Firefox versions below 126.
Ask AI about this cluster
Answers cite the sources they use
Updated 210d ago How this analysis works
Timeline
2024-05-14
CVE-2024-4773 published
2024-07-09
CVE-2024-6612 published
2026-02-18
Information published about CVE-2024-6612
2026-02-18
Information published about CVE-2024-4773
More articles in this cluster (2)
Following this threat?
Track CVE-2024-4773 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Authentication Bypass in Rejetto HFS Exploited Within 24 Hours Anthropic's Mythos model identified a critical authentication bypass in Rejetto HTTP File Server (HFS), tracked as CVE-2026-61500, allowing remote code execution. Discovered by Horizon3 researcher Zach Hanley, the flaw was revealed on September 27, 2026, and exploitation began within 24 hours, with attacks traced to…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…