CVE Database
/

CVE-2022-26386

Back to search

CVE-2022-26386

Published: Dec 22, 2022

Modified: Apr 15, 2025

PUBLISHED

Description

Previously Firefox for macOS and Linux would download temporary files to a user-specific directory in <code>/tmp</code>, but this behavior was changed to download them to <code>/tmp</code> where they could be affected by other local users. This behavior was reverted to the original, user-specific directory. <br>*This bug only affects Firefox for macOS and Linux. Other operating systems are unaffected.*. This vulnerability affects Firefox ESR < 91.7 and Thunderbird < 91.7.

VendorProductVersions

Mozilla

Firefox ESR

affected
unspecified - < 91.7

Mozilla

Thunderbird

affected
unspecified - < 91.7

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now