Vulnerabilities > Mozilla > Firefox Focus > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-10-29 CVE-2024-10474 Unspecified vulnerability in Mozilla Firefox Focus 122.0
Focus was incorrectly allowing internal links to utilize the app scheme used for deeplinking, which could result in links potentially circumventing some URL safety checks This vulnerability affects Focus for iOS < 132.
network
low complexity
mozilla
6.5
2024-09-03 CVE-2024-8399 Unspecified vulnerability in Mozilla Firefox Focus 122.0
Websites could utilize Javascript links to spoof URL addresses in the Focus navigation bar This vulnerability affects Focus for iOS < 130.
network
low complexity
mozilla
4.7
2024-01-22 CVE-2024-0606 Cross-site Scripting vulnerability in Mozilla Firefox Focus
An attacker could execute unauthorized script on a legitimate site through UXSS using window.open() by opening a javascript URI leading to unauthorized actions within the user's loaded webpage.
network
low complexity
mozilla CWE-79
6.1
2023-12-19 CVE-2023-6870 Unspecified vulnerability in Mozilla Firefox
Applications which spawn a Toast notification in a background thread may have obscured fullscreen notifications displayed by Firefox.
network
low complexity
mozilla
4.3
2023-06-19 CVE-2023-29546 Unspecified vulnerability in Mozilla Firefox and Firefox Focus
When recording the screen while in Private Browsing on Firefox for Android the address bar and keyboard were not hidden, potentially leaking sensitive information.
network
low complexity
mozilla
6.5