CVE-2020-26956 | Mozilla Firefox/Thunderbird SVG Event cross site scripting (mfsa2020-50 / Nessus ID 249880)
A vulnerability was found in Mozilla Firefox and Thunderbird. It has been classified as problematic. Affected by this issue is some unknown functionality of the component SVG Event Handler. This manipulation causes cross site scripting.
This vulnerability appears as CVE-2020-26956. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is recommended.