VYPR
Medium severity5.3NVD Advisory· Published Jun 11, 2018· Updated Jun 17, 2026

CVE-2018-5114

CVE-2018-5114

Description

If an existing cookie is changed to be "HttpOnly" while a document is open, the original value remains accessible through script until that document is closed. Network requests correctly use the changed HttpOnly cookie. This vulnerability affects Firefox < 58.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.

CVE-2018-5114 · Medium · VYPR