CVE-2017-5386 on Ubuntu 12.04 LTS (precise) - medium.
Description:
WebExtension scripts can use the data: protocol to affect pages loaded by other web extensions using this protocol, leading to potential data disclosure or privilege escalation in affected extensions.