← volver
CVE-2025-54144

Internal Firefox open-text URL scheme allowed loading of arbitrary URLs

CVSS 5.4 MEDIUMEPSS 0.2%CWE-601
The URL scheme used by Firefox to facilitate searching of text queries could incorrectly allow attackers to open arbitrary website URLs or internal pages if a user was tricked into clicking a link. This vulnerability was fixed in Firefox for iOS 141.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Productos afectados
Mozilla · Firefox for iOS

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →