CVE
- Id
- 68886
- CVE No.
- CVE-2014-1591
- Status
- Candidate
- Description
- Mozilla Firefox 33.0 and SeaMonkey before 2.31 include path strings in CSP violation reports, which allows remote attackers to obtain sensitive information via a web site that receives a report after a redirect.
- Phase
- Assigned (20140116)
- Votes
- None (candidate not yet proposed)
- Comments