vulnerability

MFSA2016-89 Firefox: Security vulnerabilities fixed in Firefox 50 (CVE-2016-9077)

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Jun 11, 2018
Added
Jul 12, 2018
Modified
Aug 11, 2025

Description

Canvas allows the use of the "feDisplacementMap" filter on images loaded cross-origin. The rendering by the filter is variable depending on the input pixel, allowing for timing attacks when the images are loaded from third party locations. This vulnerability affects Firefox < 50.

Solution

mozilla-firefox-upgrade-50_0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.