CVE Published: 08/01/2020 |
CVE Updated: 05/08/2024 |
CVE Year: 2019 Source: mozilla |
Vendor: Mozilla |
Product: Firefox Status : PUBLISHED
CVE-2019-17002 Description
If upgrade-insecure-requests was specified in the Content Security Policy, and a link was dragged and dropped from that page, the link was not upgraded to https. This vulnerability affects Firefox < 70.