
This post details CVE-2024-4367, a vulnerability in PDF.js found by Codean Labs. PDF.js is a JavaScript-based PDF viewer maintained by Mozilla. This bug allows an attacker to execute arbitrary JavaScript code as soon as a malicious PDF file is opened. This affects all Firefox users (<126) because PDF.js is used by Firefox to show PDF files, but also seriously impacts many web- and Electron-based a
PCã§ã¢ããªã±ã¼ã·ã§ã³ãåããã¦ããæã«ãä½ããã®çç±ã§ã¢ããªã±ã¼ã·ã§ã³ã®åä½ãçªç¶æ¢ã¾ã£ã¦ãã¾ããåèµ·åãããã¨ãããã¨ãã人ã¯å¤ãã¯ããMozillaãéçºããã¦ã§ããã©ã¦ã¶ã§ã¯ã¯ã©ãã·ã¥æã«ãã¯ã©ãã·ã¥ã¬ãã¼ã¿ã¼ããèµ·åãã¦ã¬ãã¼ãæã®ç¶æ³ãä¼ãããã¨ãã§ãã¾ãããç¶æ³ã«ãã£ã¦ã¯ãããããèµ·åããªããã¨ãããã¾ãããããªæã«åå ãçªãæ¢ãã¦Firefoxã®éçºé£ã«å ±åããæ¹æ³ããFirefoxã®éçºè ãã½ã¼ã·ã£ã«ãã¥ã¼ã¹ãµã¤ãã®Hacker Newsã§è§£èª¬ãã¦ãã¾ãã Since upgrading to 118 I've had random hangs of firefox every few days. Not clea... | Hacker News https://news.ycombinator.com/item?id=38087817 Hacker Newsã¦ã¼ã¶ã¼ã®
The real gem of Firefox is Containers. No other browser has something like this. It's something critically missing from Chrome. I don't mean "Just create a private window", I mean being able to create 1 + infinitely many profiles/containers. Firefox has an extension called Temporary Containers that makes this better: Every new tab is a temporary, ephemeral container. By default I get isolation. I
Firefoxã«ã¯å¥ãã©ã¦ã¶ããå±¥æ´ããæ°ã«å ¥ããã¤ã³ãã¼ãã§ããæ©è½ãæè¼ããã¦ãã¾ããæ°ãã«ãFirefoxã§ãChromeã§ä½¿ç¨ä¸ã®æ¡å¼µæ©è½ãã¤ã³ãã¼ãããæ©è½ãã®ãã¹ããå§ã¾ã£ãã®ã§ãå®éã«Chromeããæ¡å¼µæ©è½ãã¤ã³ãã¼ãããæé ã確ããã¦ã¿ã¾ããã Import bookmarks and other data from Google Chrome | Firefox Help https://support.mozilla.org/en-US/kb/import-bookmarks-google-chrome Firefox users may import Chrome extensions now - gHacks Tech News https://www.ghacks.net/2023/08/23/firefox-users-may-import-chrome-ex
Firefox address bar. The address bar has become our entry point to the internet these days. Firefox in its default configuration does some sort of smart guess on what you type there. If it resembles a URL then the browser makes that request. If not, it sends the string you typed to your default search engine. It also includes some fuzzy search matches from your history and all that, which is fine
ãã©ã¦ã¶ã¼æ¡å¼µæ©è½å§ãã¾ãããæ¡å¼µæ©è½ã¨ã¯ä½ãï¼åãã¦ã®æ¡å¼µæ©è½2 ã¤ãã®æ¡å¼µæ©è½æ¡å¼µæ©è½ã®ä¸èº«æ¡å¼µæ©è½ã®ä¾æ¬¡ã«ã©ãããã®ãï¼æ¦å¿µJavaScript API 群ã³ã³ãã³ãã¹ã¯ãªããBackground scriptsããããã¿ã¼ã³ãã¡ã¤ã«ã®æä½å½éåContent Security Policyãã¤ãã£ãã¡ãã»ã¼ã¸ã³ã°Differences between API implementationsChrome ã¨ã®éäºææ§ã¦ã¼ã¶ã¼ã¤ã³ã¿ã¼ãã§ã¤ã¹ã¦ã¼ã¶ã¼ã¤ã³ã¿ã¼ãã§ã¤ã¹ãã¼ã«ãã¼ãã¿ã³ã¢ãã¬ã¹ãã¼ãã¿ã³ãµã¤ããã¼ã³ã³ããã¹ãã¡ãã¥ã¼é ç®ãªãã·ã§ã³ãã¼ã¸æ¡å¼µæ©è½ãã¼ã¸éç¥Address bar suggestionséçºè ãã¼ã«ããã«éå¼ããªãã¡ã¬ã³ã¹HTTP ãªã¯ã¨ã¹ãã¸ã®ä»å ¥ã¦ã§ããã¼ã¸ãå¤æ´ããInsert external contentShare objects with page
ã¢ãã¤ã«ããããªã¼ã¨ã¯å¼ã¹ãªãããã»ã¼ãã¿é»ããªã³ã¬1å°ã§æäºã®æãã¢ã¦ããã¢ã大活èº!ãAmazonã¹ãã¤ã«SALEã
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}