Vulnerabilities (CVE)

Filtered by vendor Sage.mozdev Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-4102 2 Mozilla, Sage.mozdev 2 Firefox, Sage 2024-02-04 9.3 HIGH N/A
Sage 1.4.3 and earlier extension for Firefox performs certain operations with chrome privileges, which allows remote attackers to execute arbitrary commands and perform cross-domain scripting attacks via the description tag of an RSS feed.