Mozilla · Firefox · CVE-2024-5689
**Name of the Vulnerable Software and Affected Versions**
Firefox versions prior to 127
**Description**
The issue is related to incorrect restriction of visualizable layers in the user interface of the Firefox browser's screenshot creation page. This could allow a remote attacker to compromise data integrity. Additionally, a website could overlay a 'My Shots' button when a user takes a screenshot and direct them to a replica Firefox Screenshots page for phishing purposes.
**Recommendations**
For versions prior to 127, update to version 127 or later to resolve the issue. As a temporary workaround, consider avoiding the use of the screenshot feature until a patch is available. Restrict access to untrusted websites to minimize the risk of exploitation.