CVE Database
/

CVE-2023-23604

Back to search

CVE-2023-23604

Published: Jun 2, 2023

Modified: Dec 18, 2025

PUBLISHED

Description

A duplicate `SystemPrincipal` object could be created when parsing a non-system html document via `DOMParser::ParseFromSafeString`. This could have lead to bypassing web security checks. This vulnerability affects Firefox < 109.

VendorProductVersions

Mozilla

Firefox

affected
unspecified - < 109

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now