CVE

Id
84474  
CVE No.
CVE-2015-7197  
Status
Candidate  
Description
Mozilla Firefox before 42.0 and Firefox ESR 38.x before 38.4 improperly control the ability of a web worker to create a WebSocket object, which allows remote attackers to bypass intended mixed-content restrictions via crafted JavaScript code.  
Phase
Assigned (20150916)  
Votes
None (candidate not yet proposed)  
Comments