Cross-origin images can be read from a canvas element in violation of the same-origin policy using the transferFromImageBitmap method. *Note: This only affects Firefox 65. Previous versions are unaffected.*. This vulnerability affects Firefox < 65.0.1.
References
Configurations
Information
Published : 2019-04-26 10:29
Updated : 2019-06-10 08:29
NVD link : CVE-2018-18511
Mitre link : CVE-2018-18511
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
mozilla
- firefox