OCTOBER 10, 2026
Live Feed
Back to database
Case File

CVE-2019-9804

CRITICAL · CVSS 9.8 EPSS 1.83%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-04-26 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It affects Firefox.

CVE
CVE-2019-9804
Severity
CRITICAL
CVSS
9.8
EPSS
1.83%
Firefox

Original NVD Description

In Firefox Developer Tools it is possible that pasting the result of the 'Copy as cURL' command into a command shell on macOS will cause the execution of unintended additional bash script commands if the URL was maliciously crafted. This is the result of an issue with the native version of Bash on macOS. *Note: This issue only affects macOS. Other operating systems are unaffected.*. This vulnerability affects Firefox < 66.

Related CVEs

Other vulnerabilities affecting the same vendor(s)