Bugzilla – Dependency tree for Bug 1149302
VUL-1: CVE-2019-11738: MozillaFirefox: Content security policy bypass through hash-based sources in directives