CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

mozilla

webthings_gateway

2 known vulnerabilities · sorted by CVSS score

CVE-2020-6804
HIGH8.8

A reflected XSS vulnerability exists within the gateway, allowing an attacker to craft a specialized URL which could steal the user's authentication token. When combined with CVE-2020-6803, an attacker could fully compromise the system.

mozilla / webthings_gateway
Network
Published Feb 28, 2020
CVE-2020-6803
MEDIUM5.4

An open redirect is present on the gateway's login page, which could cause a user to be redirected to a malicious site after logging in.

mozilla / webthings_gateway
Network
Published Feb 28, 2020