← Back to CVEs
CVE-2019-11715
N/ADescription
Due to an error while parsing page content, it is possible for properly sanitized user input to be misinterpreted and lead to XSS hazards on web sites in certain circumstances. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8.
CVE Details
CVSS v3.1 ScoreN/A
Published7/23/2019
Last Modified11/25/2025
Sourcenvd
Honeypot Sightings0
Affected Products
mozilla:firefoxmozilla:thunderbird
Weaknesses (CWE)
CWE-79
References
http://lists.opensuse.org/opensuse-security-announce/2019-07/msg00055.html(security@mozilla.org)
http://lists.opensuse.org/opensuse-security-announce/2019-07/msg00058.html(security@mozilla.org)
http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00073.html(security@mozilla.org)
http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00009.html(security@mozilla.org)
http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00010.html(security@mozilla.org)
https://bugzilla.mozilla.org/show_bug.cgi?id=1555523(security@mozilla.org)
https://lists.debian.org/debian-lts-announce/2019/08/msg00001.html(security@mozilla.org)
https://lists.debian.org/debian-lts-announce/2019/08/msg00002.html(security@mozilla.org)
https://security.gentoo.org/glsa/201908-12(security@mozilla.org)
https://security.gentoo.org/glsa/201908-20(security@mozilla.org)
https://www.mozilla.org/security/advisories/mfsa2019-21/(security@mozilla.org)
https://www.mozilla.org/security/advisories/mfsa2019-22/(security@mozilla.org)
https://www.mozilla.org/security/advisories/mfsa2019-23/(security@mozilla.org)
http://lists.opensuse.org/opensuse-security-announce/2019-07/msg00055.html(af854a3a-2127-422b-91ae-364da2661108)
http://lists.opensuse.org/opensuse-security-announce/2019-07/msg00058.html(af854a3a-2127-422b-91ae-364da2661108)
http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00073.html(af854a3a-2127-422b-91ae-364da2661108)
http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00009.html(af854a3a-2127-422b-91ae-364da2661108)
http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00010.html(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.mozilla.org/show_bug.cgi?id=1555523(af854a3a-2127-422b-91ae-364da2661108)
https://lists.debian.org/debian-lts-announce/2019/08/msg00001.html(af854a3a-2127-422b-91ae-364da2661108)
https://lists.debian.org/debian-lts-announce/2019/08/msg00002.html(af854a3a-2127-422b-91ae-364da2661108)
https://security.gentoo.org/glsa/201908-12(af854a3a-2127-422b-91ae-364da2661108)
https://security.gentoo.org/glsa/201908-20(af854a3a-2127-422b-91ae-364da2661108)
https://www.mozilla.org/security/advisories/mfsa2019-21/(af854a3a-2127-422b-91ae-364da2661108)
https://www.mozilla.org/security/advisories/mfsa2019-22/(af854a3a-2127-422b-91ae-364da2661108)
https://www.mozilla.org/security/advisories/mfsa2019-23/(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.