← Back to CVE List
CVE-2018-12398
By using the reflected URL in some special resource URIs, such as chrome:, it is possible to inject stylesheets and bypass Content Security Policy (CSP). This vulnerability affects Firefox < 63.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt