CVE-2023-29534
28Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 9.1epss 0.7%
exploitation probability
0.7%top 48% of all CVEs
observed exploitation
nono source reports it
Different techniques existed to obscure the fullscreen notification in Firefox and Focus for Android. These could have led to potential user confusion and spoofing attacks.
*This bug only affects Firefox and Focus for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox for Android < 112 and Focus for Android < 112.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
References
https://bugzilla.mozilla.org/show_bug.cgi?id=1816007https://bugzilla.mozilla.org/show_bug.cgi?id=1816059https://bugzilla.mozilla.org/show_bug.cgi?id=1821155https://bugzilla.mozilla.org/show_bug.cgi?id=1821576https://bugzilla.mozilla.org/show_bug.cgi?id=1821906https://bugzilla.mozilla.org/show_bug.cgi?id=1822298https://bugzilla.mozilla.org/show_bug.cgi?id=1822305https://www.mozilla.org/security/advisories/mfsa2023-13/