CVE-2019-11737
CVE-2019-11737
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.5%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
27 Sep 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
If a wildcard ('*') is specified for the host in Content Security Policy (CSP) directives, any port or path restriction of the directive will be ignored, leading to CSP directives not being properly applied to content. This vulnerability affects Firefox < 69.
Affected products
Mozilla · FirefoxWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →