Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

U543083

#41847of 53,630
6.5Total CVSS
Vulnerabilities · 1
PT-2019-4554
6.5
2019-07-11
Mozilla · Firefox · CVE-2019-11721
**Name of the Vulnerable Software and Affected Versions** Firefox versions prior to 68 **Description** The issue is related to an error in encoding the Latin symbol 'kra', which can be used to substitute the standard 'k' symbol in the address bar. This can lead to domain spoofing attacks, as the symbol does not display as punycode text, potentially causing user confusion. **Recommendations** For versions prior to 68, update to version 68 or later to resolve the issue. As a temporary workaround, consider avoiding the use of the `kra` symbol in the address bar until the update is applied. Restrict access to potentially spoofed domains to minimize the risk of exploitation.