CVE-2009-1312
Mozilla Firefox before 3.0.9 and SeaMonkey 1.1.17 do not block javascript: URIs in Refresh headers in HTTP responses, which allows remote attackers to...
- Published
- Apr 22, 2009
- Updated
- Aug 7, 2024
- Assigning CNA
- redhat
- Evidence observed
- Apr 22, 2009