Vulnerability CVE-2021-4140


Published: 2022-12-22

Description:
It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbox. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5.

 References:
https://www.mozilla.org/security/advisories/mfsa2022-02/
https://www.mozilla.org/security/advisories/mfsa2022-01/
https://bugzilla.mozilla.org/show_bug.cgi?id=1746720
https://www.mozilla.org/security/advisories/mfsa2022-03/

Copyright 2026, cxsecurity.com

 

Back to Top