← volver
CVE-2025-14744

Filename spoofing via Unicode Right-to-Left Override in Firefox for iOS

CVSS 6.5 MEDIUMEPSS 0.2%CWE-451
Unicode RTLO characters could allow malicious websites to spoof filenames in the downloads UI for Firefox for iOS, potentially tricking users into saving files of an unexpected file type. This vulnerability was fixed in Firefox for iOS 144.0.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Productos afectados
Mozilla · Firefox for iOS

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →