When the number of cookies per domain was exceeded in `document.cookie`, the actual cookie jar sent to the host was no longer consistent with expected cookie jar state. This could have caused requests to be sent with some cookies missing. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mozilla
Published: 2023-08-01T15:01:20.220Z
Updated: 2024-08-02T07:17:11.427Z
Reserved: 2023-08-01T15:00:27.480Z
Link: CVE-2023-4055
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-08-01T16:15:09.967
Modified: 2023-08-09T21:15:11.820
Link: CVE-2023-4055
Redhat