CVE-2026-16404
- EPSS 0.16%
- Veröffentlicht 21.07.2026 12:38:16
- Zuletzt bearbeitet 24.07.2026 16:24:30
Spoofing issue in Firefox for Android. This vulnerability was fixed in Firefox 153.
CVE-2026-16373
- EPSS 0.27%
- Veröffentlicht 21.07.2026 12:37:48
- Zuletzt bearbeitet 24.07.2026 16:27:12
Information disclosure in the Privacy component in Firefox for Android. This vulnerability was fixed in Firefox 153.
CVE-2026-14906
- EPSS 0.19%
- Veröffentlicht 13.07.2026 18:27:03
- Zuletzt bearbeitet 14.07.2026 18:31:45
Pages with malicious titles could potentially allow saved PDF content to overwrite PDF files or bundled content within the Firefox for iOS application sandbox. This vulnerability was fixed in Firefox for iOS 152.4.
CVE-2024-43113
- EPSS 0.25%
- Veröffentlicht 06.08.2024 16:15:49
- Zuletzt bearbeitet 19.08.2026 15:30:33
The contextual menu for links could provide an opportunity for cross-site scripting attacks This vulnerability affects Firefox for iOS < 129.
CVE-2024-43112
- EPSS 0.25%
- Veröffentlicht 06.08.2024 16:15:49
- Zuletzt bearbeitet 19.08.2026 15:30:33
Long pressing on a download link could potentially provide a means for cross-site scripting This vulnerability affects Firefox for iOS < 129.
CVE-2024-43111
- EPSS 0.27%
- Veröffentlicht 06.08.2024 16:15:49
- Zuletzt bearbeitet 19.08.2026 15:30:33
Long pressing on a download link could potentially allow Javascript commands to be executed within the browser This vulnerability affects Firefox for iOS < 129.
CVE-2024-7523
- EPSS 0.28%
- Veröffentlicht 06.08.2024 13:15:57
- Zuletzt bearbeitet 19.08.2026 15:29:21
A select option could partially obscure security prompts. This could be used by a malicious site to trick a user into granting permissions. *This issue only affects Android versions of Firefox.* This vulnerability affects Firefox < 129.
CVE-2024-38313
- EPSS 0.24%
- Veröffentlicht 13.06.2024 20:15:15
- Zuletzt bearbeitet 19.08.2026 15:30:33
In certain scenarios a malicious website could attempt to display a fake location URL bar which could mislead users as to the actual website address This vulnerability affects Firefox for iOS < 127.
CVE-2024-38312
- EPSS 0.29%
- Veröffentlicht 13.06.2024 20:15:15
- Zuletzt bearbeitet 19.08.2026 15:30:33
When browsing private tabs, some data related to location history or webpage thumbnails could be persisted incorrectly within the sandboxed app bundle after app termination This vulnerability affects Firefox for iOS < 127.
CVE-2024-0953
- EPSS 0.31%
- Veröffentlicht 05.02.2024 17:15:09
- Zuletzt bearbeitet 19.08.2026 15:30:33
When a user scans a QR Code with the QR Code Scanner feature, the user is not prompted before being navigated to the page specified in the code. This may surprise the user and potentially direct them to unwanted content. This vulnerability affects F...