Product:

Geckodriver

(Mozilla)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 2
Date Id Summary Products Score Patch Annotated
2021-07-20 CVE-2020-15660 Missing checks on Content-Type headers in geckodriver before 0.27.0 could lead to a CSRF vulnerability, that might, when paired with a specifically prepared request, lead to remote code execution. Geckodriver 8.8
2022-05-02 CVE-2021-4138 Improved Host header checks to reject requests not sent to a well-known local hostname or IP, or the server-specified hostname. Geckodriver 5.3