Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-27425

Опубликовано: 04 мар. 2025
Источник: nvd
CVSS3: 4.3
EPSS Низкий

Описание

Scanning certain QR codes that included text with a website URL could allow the URL to be opened without presenting the user with a confirmation alert first This vulnerability affects Firefox for iOS < 136.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
Версия до 136.0 (исключая)
cpe:2.3:o:apple:iphone_os:-:*:*:*:*:*:*:*

EPSS

Процентиль: 26%
0.00092
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 4.3
ubuntu
11 месяцев назад

Scanning certain QR codes that included text with a website URL could allow the URL to be opened without presenting the user with a confirmation alert first This vulnerability affects Firefox for iOS < 136.

CVSS3: 4.3
debian
11 месяцев назад

Scanning certain QR codes that included text with a website URL could ...

CVSS3: 4.3
github
11 месяцев назад

Scanning certain QR codes that included text with a website URL could allow the URL to be opened without presenting the user with a confirmation alert first This vulnerability affects Firefox for iOS < 136.

EPSS

Процентиль: 26%
0.00092
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-287