suse · CVE-2024-8386

Quick triage

Priority: high Published: 2024-09-04 23:16:17 UTC Updated: 2026-03-05 02:55:51 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2024-8386 severity important: SUSE including 36 source package names (MozillaFirefox-128.2.0-112.225.1, MozillaFirefox-128.2.0-150200.152.149.1, …), 152 product×package rows across 52 product lines (Container suse/kiosk/firefox-esr, Image SLES12-SP5-SAP-Azure-LI-BYOS-Production, … (52 product lines)): Fixed 152.

Description:

If a site had been granted the permission to open popup windows, it could cause Select elements to appear on top of another site to perform a spoofing attack. This vulnerability affects Firefox < 130, Firefox ESR < 128.2, and Thunderbird < 128.2.

cvelogic Threat Intelligence