CVE-2021-4140
CRITICAL
10.0
CVSS Severity Score
Vulnerability Description
It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbox. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5.
Affected Platforms (CPE)
📦
Mozilla
Firefox
< 96.0📦
Mozilla
Firefox Esr
< 91.5📦
Mozilla
