vulnerability

MFSA2024-29 Firefox: Security Vulnerabilities fixed in Firefox 128 (CVE-2024-6601)

Severity
6
CVSS
(AV:N/AC:L/Au:M/C:P/I:P/A:P)
Published
Jul 9, 2024
Added
Jul 10, 2024
Modified
Aug 11, 2025

Description

A race condition could lead to a cross-origin container obtaining permissions of the top-level origin. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.

Solution

mozilla-firefox-upgrade-128_0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.