Back to search
CVE-2024-29944
Published: Mar 22, 2024
Modified: Mar 14, 2025
PUBLISHED
Description
An attacker was able to inject an event handler into a privileged object that would allow arbitrary JavaScript execution in the parent process. Note: This vulnerability affects Desktop Firefox only, it does not affect mobile versions of Firefox. This vulnerability affects Firefox < 124.0.1 and Firefox ESR < 115.9.1.
| Vendor | Product | Versions |
|---|---|---|
Mozilla | Firefox | affected unspecified - < 124.0.1 |
Mozilla | Firefox ESR | affected unspecified - < 115.9.1 |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now