QID 630957
Date Published: 2024-03-18
QID 630957: Mozilla Firefox for iOS Multiple Vulnerabilities
CVE-2024-26283: Address bar spoofing using Firefox custom open URL scheme
CVE-2024-26282: UXSS through a canonical element
CVE-2024-26281: QR code scanner allowed executing a JavaScript URI
On successful exploitation, it could allow an attacker to execute code.
Solution
Upgrade to the latest packages which contain a patch. Refer to mfsa2024-08 to address this issue and obtain more information.
Vendor References
- mfsa2024-08 -
www.mozilla.org/en-US/security/advisories/mfsa2024-08/
CVEs related to QID 630957
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| mfsa2024-08 | iOS |
|