A potentially exploitable type confusion could be triggered when looking up a property name on an object being used as the `with` environment. This vulnerability affects Firefox < 130, Firefox ESR < 128.2, Firefox ESR < 115.15, Thunderbird < 128.2, and Thunderbird < 115.15.
No PoCs from references.
- https://github.com/5211-yx/javascript_fuzzer
- https://github.com/bjrjk/CVE-2024-8381
- https://github.com/fkie-cad/nvd-json-data-feeds
- https://github.com/gmh5225/vulnjs
- https://github.com/googleprojectzero/fuzzilli
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/wh1ant/vulnjs