A `<dialog>` element could have been manipulated to paint content outside of a sandboxed iframe. This could allow untrusted content to display under the guise of trusted content. This vulnerability affects Firefox < 121.CreditsOriol BrufauReferenceshttps://bugzilla.mozilla.org/show_bug.cgi?id=1799036https://www.mozilla.org/security/advisories/mfsa2023-56/https://security.gentoo.org/glsa/202401-10