VDB
CVE-2020-15665
CVE-2020-15665
PUBLISHED
CVSS 4.300000190734863 MEDIUM
Firefox did not reset the address bar after the beforeunload dialog was shown if the user chose to remain on the page. This could have resulted in an incorrect URL being shown when used in conjunction with other unexpected browser behaviors. This vulnerability affects Firefox < 80.
EPSS 0.69% · 50.2th percentile
Risk Scores
CVSS 3.1
4.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
EPSS Score
0.69%
50.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:16.04:LTS | firefox | 56.0+build6-0ubuntu0.16.04.2, 0, 41.0.2+build2-0ubuntu1 |
| Ubuntu:18.04:LTS | firefox | 78.0.1+build1-0ubuntu0.18.04.1, 63.0.3+build1-0ubuntu0.18.04.1, * |
| Ubuntu:20.04:LTS | firefox | 70.0+build2-0ubuntu1, 74.0+build1-0ubuntu1, 74.0+build2-0ubuntu1 |
| Ubuntu:18.04:LTS | mozjs52 | 52.3.1-7fakesync1, 52.8.1-0ubuntu0.18.04.1, 52.9.1-0ubuntu0.18.04.1 |
| Ubuntu:18.04:LTS | mozjs38 | 38.8.0~repack1-0ubuntu1, 38.8.0~repack1-0ubuntu3, 38.8.0~repack1-0ubuntu4 |
| Ubuntu:20.04:LTS | mozjs52 | 52.9.1-1ubuntu3, 52.9.1-1build1, 0 |
| Ubuntu:20.04:LTS | mozjs68 | 0, 68.6.0-1, 68.5.0-2~fakesync |
Timeline
- Aug 26, 2020 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 25, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Mar 1, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 3, 2022 EPSS Score
- Jul 4, 2022 EPSS Score
- Sep 6, 2022 EPSS Score
- Nov 8, 2022 EPSS Score
References
- https://ubuntu.com/security/CVE-2020-15665 third-party-advisory
- https://www.mozilla.org/en-US/security/advisories/mfsa2020-36/#CVE-2020-15665 third-party-advisory
- https://ubuntu.com/security/notices/USN-4474-1 vendor-advisory
- https://www.cve.org/CVERecord?id=CVE-2020-15665 third-party-advisory