It was possible to prevent a user from exiting...
High severity
Unreviewed
Published
Jul 9, 2024
to the GitHub Advisory Database
•
Updated Aug 1, 2024
Description
Published by the National Vulnerability Database
Jul 9, 2024
Published to the GitHub Advisory Database
Jul 9, 2024
Last updated
Aug 1, 2024
It was possible to prevent a user from exiting pointerlock when pressing escape and to overlay customValidity notifications from a
<select>
element over certain permission prompts. This could be used to confuse a user into giving a site unintended permissions. This vulnerability affects Firefox < 128.References