← Back to CVE List

CVE-2018-5105

Published: 2018-06-11T21:29Z
Last Modified: 2024-11-21T04:08Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
WebExtensions can bypass user prompts to first save and then open an arbitrarily downloaded file. This can result in an executable file running with local user privileges without explicit user consent. This vulnerability affects Firefox < 58. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt