Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-55030

Опубликовано: 19 авг. 2025
Источник: nvd
CVSS3: 6.1
EPSS Низкий

Описание

Firefox for iOS would not respect a Content-Disposition header of type Attachment and would incorrectly display the content inline rather than downloading, potentially allowing for XSS attacks. This vulnerability was fixed in Firefox for iOS 142.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:iphone_os:*:*
Версия до 142.0 (исключая)

EPSS

Процентиль: 5%
0.00158
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-640

Связанные уязвимости

CVSS3: 6.1
github
12 месяцев назад

Firefox for iOS would not respect a Content-Disposition header of type Attachment and would incorrectly display the content inline rather than downloading, potentially allowing for XSS attacks This vulnerability affects Firefox for iOS < 142.

CVSS3: 3.5
fstec
12 месяцев назад

Уязвимость браузера Mozilla Firefox, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю провести атаку межсайтового скриптинга (XSS)

EPSS

Процентиль: 5%
0.00158
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-640