Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-13356

Опубликовано: 07 июл. 2026
Источник: nvd
CVSS3: 6.3
EPSS Низкий

Описание

A malicious webpage could interrupt a pending navigation by enqueuing a synchronous JavaScript dialog, causing the browser UI to display the destination origin in the address bar while continuing to render attacker-controlled content. This vulnerability was fixed in Firefox for iOS 152.3.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:iphone_os:*:*
Версия до 152.3 (исключая)

EPSS

Процентиль: 3%
0.00132
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-451

Связанные уязвимости

CVSS3: 6.3
github
24 дня назад

A malicious webpage could interrupt a pending navigation by enqueuing a synchronous JavaScript dialog, causing the browser UI to display the destination origin in the address bar while continuing to render attacker-controlled content. This vulnerability was fixed in Firefox for iOS 152.3.

EPSS

Процентиль: 3%
0.00132
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-451