Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jwv5-943c-f5wh

Опубликовано: 16 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Malicious scripts that interrupt new tab page loading could cause desynchronization between the address bar and page content, allowing the attacker to spoof arbitrary HTML under a trusted domain. This vulnerability affects Firefox for iOS < 147.2.1.

Malicious scripts that interrupt new tab page loading could cause desynchronization between the address bar and page content, allowing the attacker to spoof arbitrary HTML under a trusted domain. This vulnerability affects Firefox for iOS < 147.2.1.

EPSS

Процентиль: 11%
0.00038
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-290
CWE-451

Связанные уязвимости

CVSS3: 4.3
ubuntu
3 месяца назад

Malicious scripts that interrupt new tab page loading could cause desynchronization between the address bar and page content, allowing the attacker to spoof arbitrary HTML under a trusted domain. This vulnerability was fixed in Firefox for iOS 147.2.1.

CVSS3: 4.3
nvd
3 месяца назад

Malicious scripts that interrupt new tab page loading could cause desynchronization between the address bar and page content, allowing the attacker to spoof arbitrary HTML under a trusted domain. This vulnerability was fixed in Firefox for iOS 147.2.1.

CVSS3: 4.3
debian
3 месяца назад

Malicious scripts that interrupt new tab page loading could cause desy ...

EPSS

Процентиль: 11%
0.00038
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-290
CWE-451