Medium severity6.5NVD Advisory· Published Jul 23, 2019· Updated Jun 17, 2026
CVE-2019-11699
CVE-2019-11699
Description
A malicious page can briefly cause the wrong name to be highlighted as the domain name in the addressbar during page navigations. This could result in user confusion of which site is currently loaded for spoofing attacks. This vulnerability affects Firefox < 67.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*range: <67.0
- (no CPE)range: <67
- (no CPE)range: unspecified
- osv-coords2 versionspkg:rpm/opensuse/MozillaFirefox&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/firefox-esr&distro=openSUSE%20Tumbleweed
< 92.0-1.2+ 1 more
- (no CPE)range: < 92.0-1.2
- (no CPE)range: < 128.5.1-1.1
Patches
Vulnerability mechanics
References
2- bugzilla.mozilla.org/show_bug.cginvdIssue TrackingPermissions RequiredVendor Advisory
- www.mozilla.org/security/advisories/mfsa2019-13/nvdVendor Advisory
News mentions
0No linked articles in our index yet.