VULNERABILITY INTELLIGENCE
CVE-2012-5836
CVSS score7.5 HIGH
EPSS probability4.45%
CISA KEVNot currently listed
Published2012-11-21
Last modified2026-06-16
Description
Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving the setting of Cascading Style Sheets (CSS) properties in conjunction with SVG text.