Medium
CVSS 4.3
Overview
If upgrade-insecure-requests was specified in the Content Security Policy, and a link was dragged and dropped from that page, the link was not upgraded to https. This vulnerability affects Firefox < 70.
If upgrade-insecure-requests was specified in the Content Security Policy, and a...
If upgrade-insecure-requests was specified in the Content Security Policy, and a link was dragged and dropped from that page, the link was not upgraded to https. This vulnerability affects Firefox < 70.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: