Описание
The QR scanner could allow arbitrary websites to be opened if a user was tricked into scanning a malicious link that leveraged Firefox's open-text URL scheme This vulnerability affects Firefox for iOS < 141.
Ссылки
- Issue TrackingPermissions Required
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 141.0 (исключая)
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:iphone_os:*:*
EPSS
Процентиль: 7%
0.00029
Низкий
9.1 Critical
CVSS3
Дефекты
CWE-601
Связанные уязвимости
CVSS3: 9.1
ubuntu
около 1 месяца назад
The QR scanner could allow arbitrary websites to be opened if a user was tricked into scanning a malicious link that leveraged Firefox's open-text URL scheme. This vulnerability affects Firefox for iOS < 141.
CVSS3: 9.1
github
9 дней назад
The QR scanner could allow arbitrary websites to be opened if a user was tricked into scanning a malicious link that leveraged Firefox's open-text URL scheme This vulnerability affects Firefox for iOS < 141.
EPSS
Процентиль: 7%
0.00029
Низкий
9.1 Critical
CVSS3
Дефекты
CWE-601