← Back to browse · API

CVE-2020-6820

Severity
HIGH
CVSS
8.1
EPSS
0.06305
Risk score
59.61
CISA KEV
Yes
PoC
No
Published
2021-11-03
Modified
2021-11-03
First seen
2026-08-07
Aliases
EUVD-2020-27964, GHSA-F77R-RQC9-53HH
Products
Mozilla:Firefox ESR unspecified <68.6.1, Mozilla:Firefox and Thunderbird, Mozilla:Firefox unspecified <74.0.1, Mozilla:Thunderbird unspecified <68.7.0
Sources
euvd EUVD-2020-27964
cisa.gov CVE-2020-6820

Description

Mozilla Firefox and Thunderbird contain a race condition vulnerability when handling a ReadableStream under certain conditions. The race condition creates a use-after-free vulnerability, causing unspecified impacts.

References