Browsers based on the Gecko engine are reported prone to a content spoofing vulnerability when they are running on the Apple Mac OS X platform. It is reported that the vulnerability occurs when the browser is configured to employ 'Tabbed Browsing' functionality. In essence, an XPCOM plug-in that is invoked in one tab will be drawn into the environment of alternate tabs that are open in the same browser window. This vulnerability may be eexploited to spoof content and to aid in phishing style attacks.
Browsers based on the Gecko engine are reported prone to a content spoofing vulnerability when they are running on the Apple Mac OS X platform. It is reported that the vulnerability occurs when the browser is configured to employ 'Tabbed Browsing' functionality. In essence, an XPCOM plug-in that is invoked in one tab will be drawn into the environment of alternate tabs that are open in the same browser window. This vulnerability may be eexploited to spoof content and to aid in phishing style attacks.