Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-4367

A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js context. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.145
EPSS Ranking 94.0%
CVSS Severity
CVSS v3 Score 8.8
References
Products affected by CVE-2024-4367


Contact Us

Shodan ® - All rights reserved