Medium
CVSS 5.0
Overview
Mozilla 1.0 allows remote attackers to steal cookies from other domains via a javascript: URL with a leading "//" and ending in a newline, which causes the host/path check to fail.
Mozilla 1.0 allows remote attackers to steal cookies from other domains via a ja...
Mozilla 1.0 allows remote attackers to steal cookies from other domains via a javascript: URL with a leading "//" and ending in a newline, which causes the host/path check to fail.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: