When downloading files through the Save As dialog on...
Moderate severity
Unreviewed
Published
Jun 2, 2023
to the GitHub Advisory Database
•
Updated Jan 9, 2025
Description
Published by the National Vulnerability Database
Jun 2, 2023
Published to the GitHub Advisory Database
Jun 2, 2023
Last updated
Jan 9, 2025
When downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolved those in the context of the current user.
This bug only affects Firefox on Windows. Other versions of Firefox are unaffected.. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9.
References