CVE Database
/

CVE-2019-11695

Back to search

CVE-2019-11695

Published: Jul 23, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

A custom cursor defined by scripting on a site can position itself over the addressbar to spoof the actual cursor when it should not be allowed outside of the primary web content area. This could be used by a malicious site to trick users into clicking on permission prompts, doorhanger notifications, or other buttons inadvertently if the location is spoofed over the user interface. This vulnerability affects Firefox < 67.

VendorProductVersions

Mozilla

Firefox

affected
unspecified - < 67

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now