CVE-2024-1563

8.1HIGH

An attacker could have executed unauthorized scripts on top origin sites using a JavaScript URI when opening an external URL with a custom Firefox scheme and a timeout race condition. This vulnerabili

发布于: 2/22/2024更新于: 3/27/2025

描述

An attacker could have executed unauthorized scripts on top origin sites using a JavaScript URI when opening an external URL with a custom Firefox scheme and a timeout race condition. This vulnerability affects Focus for iOS < 122.

AI分析AI驱动

受影响产品

mozillafirefox_focus

参考资料