VYPR
Medium severity4.7NVD Advisory· Published Jun 11, 2024· Updated Jun 17, 2026

CVE-2024-5691

CVE-2024-5691

Description

By tricking the browser with a X-Frame-Options header, a sandboxed iframe could have presented a button that, if clicked by a user, would bypass restrictions to open a new window. This vulnerability affects Firefox < 127, Firefox ESR < 115.12, and Thunderbird < 115.12.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

41

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.