Mozilla has fixed CVE-2022-34470, a high-severity use-after-free flaw in nsSHistory that was brought on by switching between XML documents and which can result in a crash that might be exploited.
When combined with other flaws, use-after-free vulnerabilities could result in full system compromise by allowing arbitrary code execution, data corruption, or denial of service. These flaws allow malicious websites to get through the sandbox of a browser. Read More…