[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-MGASA-2019-0213":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":11,"aliases":12,"duplicate_of":9,"upstream":13,"downstream":56,"duplicates":57,"related":58,"reserved_at":9,"published_at":80,"modified_at":81,"state":9,"summary":82,"references_raw":84,"kevs":113,"epss":9,"epss_history":114,"metrics":115,"affected":116},"MGASA-2019-0213","Updated firefox packages fix security vulnerability\n\nSandbox escape via installation of malicious language pack. (CVE-2019-9811)\n\nScript injection within domain through inner window reuse. (CVE-2019-11711)\n\nCross-origin POST requests can be made with NPAPI plugins by following 308\nredirects. (CVE-2019-11712)\n\nUse-after-free with HTTP/2 cached stream. (CVE-2019-11713)\n\nNeckoChild can trigger crash when accessed off of main thread.\n(CVE-2019-11714)\n\nEmpty or malformed p256-ECDH public keys may trigger a segmentation fault.\n(CVE-2019-11729)\n\nHTML parsing error can contribute to content XSS. (CVE-2019-11715)\n\nglobalThis not enumerable until accessed. (CVE-2019-11716)\n\nCaret character improperly escaped in origins. (CVE-2019-11717)\n\nActivity Stream writes unsanitized content to innerHTML. (CVE-2019-11718)\n\nOut-of-bounds read when importing curve25519 private key. (CVE-2019-11719)\n\nCharacter encoding XSS vulnerability. (CVE-2019-11720)\n\nDomain spoofing through unicode latin 'kra' character. (CVE-2019-11721)\n\nSame-origin policy treats all files in a directory as having the\nsame-origin. (CVE-2019-11730)\n\nCookie leakage during add-on fetching across private browsing boundaries.\n(CVE-2019-11723)\n\nRetired site input.mozilla.org has remote troubleshooting permissions.\n(CVE-2019-11724)\n\nWebsocket resources bypass safebrowsing protections. (CVE-2019-11725)\n\nPKCS#1 v1.5 signatures can be used for TLS 1.3. (CVE-2019-11727)\n\nPort scanning through Alt-Svc header. (CVE-2019-11728)\n\nMemory safety bugs fixed in Firefox 68. (CVE-2019-11710)\n\nMemory safety bugs fixed in Firefox 68 and Firefox ESR 60.8.\n(CVE-2019-11709)\n",null,[],[],[],[14,16,18,20,22,24,26,28,30,32,34,36,38,40,42,44,46,48,50,52,54],{"_key":15},"CVE-2019-9811",{"_key":17},"CVE-2019-11711",{"_key":19},"CVE-2019-11712",{"_key":21},"CVE-2019-11713",{"_key":23},"CVE-2019-11714",{"_key":25},"CVE-2019-11729",{"_key":27},"CVE-2019-11715",{"_key":29},"CVE-2019-11716",{"_key":31},"CVE-2019-11717",{"_key":33},"CVE-2019-11718",{"_key":35},"CVE-2019-11719",{"_key":37},"CVE-2019-11720",{"_key":39},"CVE-2019-11721",{"_key":41},"CVE-2019-11730",{"_key":43},"CVE-2019-11723",{"_key":45},"CVE-2019-11724",{"_key":47},"CVE-2019-11725",{"_key":49},"CVE-2019-11727",{"_key":51},"CVE-2019-11728",{"_key":53},"CVE-2019-11710",{"_key":55},"CVE-2019-11709",[],[],[59,60,61,62,63,64,65,66,67,68,69,70,71,72,73,74,75,76,77,78,79],{"_key":55},{"_key":53},{"_key":17},{"_key":19},{"_key":21},{"_key":23},{"_key":27},{"_key":29},{"_key":31},{"_key":33},{"_key":35},{"_key":37},{"_key":39},{"_key":43},{"_key":45},{"_key":47},{"_key":49},{"_key":51},{"_key":25},{"_key":41},{"_key":15},"2019-07-21T18:17:27Z","2026-04-16T04:26:22.855594Z",{"cisa_kev":83,"cisa_ransomware":83,"cisa_vendor":9,"epss_severity":9,"epss_score":9,"severity":9,"severity_score":9,"severity_version":9,"severity_source":9,"severity_vector":9,"severity_status":9},false,[85,91,96,101,105,109],{"url":86,"sources":87,"tags":89},"https://advisories.mageia.org/MGASA-2019-0213.html",[88],"osv_mageia",[90],"Advisory",{"url":92,"sources":93,"tags":94},"https://bugs.mageia.org/show_bug.cgi?id=25105",[88],[95],"REPORT",{"url":97,"sources":98,"tags":99},"https://www.mozilla.org/en-US/firefox/68.0/releasenotes/",[88],[95,100],"WEB",{"url":102,"sources":103,"tags":104},"https://www.mozilla.org/en-US/firefox/68.0esr/releasenotes/",[88],[95,100],{"url":106,"sources":107,"tags":108},"https://www.mozilla.org/en-US/security/advisories/mfsa2019-21/",[88],[95,90],{"url":110,"sources":111,"tags":112},"https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.45_release_notes",[88],[95,100],[],[],[],[117,129,135,141],{"ecosystem":118,"name":119,"vendor":120,"product":119,"cpe_part":9,"purl_type":121,"purl_namespace":120,"purl_name":119,"source":9,"versions":122},"Mageia","firefox","mageia","rpm",[123],{"version":124,"is_range":125,"range_type":126,"version_start":9,"version_start_type":9,"version_end":127,"version_end_type":128,"fixed_in":9},"lt68_0_1_1_mga7",true,"ecosystem","68.0-1.1.mga7","excluding",{"ecosystem":118,"name":130,"vendor":120,"product":130,"cpe_part":9,"purl_type":121,"purl_namespace":120,"purl_name":130,"source":9,"versions":131},"firefox-l10n",[132],{"version":133,"is_range":125,"range_type":126,"version_start":9,"version_start_type":9,"version_end":134,"version_end_type":128,"fixed_in":9},"lt68_0_1_mga7","68.0-1.mga7",{"ecosystem":118,"name":136,"vendor":120,"product":136,"cpe_part":9,"purl_type":121,"purl_namespace":120,"purl_name":136,"source":9,"versions":137},"nss",[138],{"version":139,"is_range":125,"range_type":126,"version_start":9,"version_start_type":9,"version_end":140,"version_end_type":128,"fixed_in":9},"lt3_45_0_1_mga7","3.45.0-1.mga7",{"ecosystem":118,"name":142,"vendor":120,"product":142,"cpe_part":9,"purl_type":121,"purl_namespace":120,"purl_name":142,"source":9,"versions":143},"rootcerts",[144],{"version":145,"is_range":125,"range_type":126,"version_start":9,"version_start_type":9,"version_end":146,"version_end_type":128,"fixed_in":9},"lt20190604_00_1_mga7","20190604.00-1.mga7"]