Firefox before 1.0 allows the user to store a (1) javascript: or (2) data: URLs as a Livefeed bookmark, then executes it in the security context of the currently loaded page when the user later accesses the bookmark, which could allow remote attackers to execute arbitrary code.
| Software | From | Fixed in |
|---|---|---|
| mozilla / firefox | 0.8 | 0.8.x |
| mozilla / firefox | 0.9.1 | 0.9.1.x |
| mozilla / firefox | 0.10.1 | 0.10.1.x |
| mozilla / firefox | 0.9 | 0.9.x |
| mozilla / firefox | 1.0 | 1.0.x |
| mozilla / firefox | 0.9.3 | 0.9.3.x |
| mozilla / firefox | 0.9.2 | 0.9.2.x |
| mozilla / firefox | 0.9-rc | 0.9-rc.x |
| mozilla / firefox | 0.10 | 0.10.x |