CVE-2024-5693: Medium severity thunderbird vulnerability
Last updated 24 July 2024
Other sources
Offscreen Canvas did not properly track cross-origin tainting, which could be used to access image data from another site in violation of same-origin policy.
— Mozilla
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-5693?
CVE-2024-5693 is classified as a moderate severity vulnerability due to its potential to bypass same-origin policy protections.
How do I fix CVE-2024-5693?
To fix CVE-2024-5693, update your affected software to the latest version that addresses this vulnerability.
Which software is affected by CVE-2024-5693?
CVE-2024-5693 affects Mozilla Firefox ESR versions up to 115.12, Mozilla Thunderbird up to 115.12, and others listed in specific package distributions.
What impact does CVE-2024-5693 have on web security?
CVE-2024-5693 can potentially allow malicious sites to access image data from other origins, undermining the same-origin policy.
Is there a known exploit for CVE-2024-5693?
As of now, there is no publicly known exploit specifically targeting CVE-2024-5693, but the vulnerability itself poses security risks.