CVE-2022-34471 - CVE House
Back to Database
Status published Unknown CVE-2022-34471

When downloading an update for an addon, the downloaded addon...

Vulnerability Description

When downloading an update for an addon, the downloaded addon update's version was not verified to match the version selected from the manifest. If the manifest had been tampered with on the server, an attacker could trick the browser into downgrading the addon to a prior version. This vulnerability affects Firefox < 102.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-34471

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Firefox
Vulnerable Versions:
unspecified

Timeline

Official Publish: December 22nd, 2022
Last Modified: April 15th, 2025
Added to House: July 21st, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.